ID:3885 - Exploit for Allocation of Resources Without Limits or Throttling in OpenBSD - CVE-2017-5850

 
Main Vulnerability Database Exploits ID:3885 - Exploit for Allocation of Resources Without Limits or Throttling in OpenBSD - CVE-2017-5850

ID:3885 - Exploit for Allocation of Resources Without Limits or Throttling in OpenBSD - CVE-2017-5850

Published: August 9, 2020


Vulnerability identifier: #VU39366
Vulnerability risk: Medium
CVE-ID: CVE-2017-5850
CWE-ID: CWE-770
Exploitation vector: Remote access
Vulnerable software:
OpenBSD

Link to public exploit:


Vulnerability description

The vulnerability allows a remote non-authenticated attacker to perform a denial of service (DoS) attack.

httpd in OpenBSD allows remote attackers to cause a denial of service (memory consumption) via a series of requests for a large file using an HTTP Range header.


Remediation

Install update from vendor's website.