DEBIAN-CVE-2007-1349

Advisory lineage Upstream: 1 Downstream: 0
Upstream
Published: 30 Mar 2007, 00:19
Last modified:28 Apr 2026, 20:09

Vulnerability Summary

Overall Risk (default)
minimal
0/100
CVSS Score
No data
EPSS Score
No data
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected

Timeline

30 Mar 2007, 00:19
Published
Vulnerability first disclosed
28 Apr 2026, 20:09
Last Modified
Vulnerability information updated

Description

PerlRun.pm in Apache mod_perl before 1.30, and RegistryCooker.pm in mod_perl 2.x, does not properly escape PATH_INFO before use in a regular expression, which allows remote attackers to cause a denial of service (resource consumption) via a crafted URI.

Affected Systems

  • debianlibapache2-mod-perl2

    < 2.0.2-5 | < 2.0.2-5 | < 2.0.2-5 | < 2.0.2-5

References (1)