Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
connections.c in lighttpd before 1.4.16 might accept more connections than the configured maximum, which allows remote attackers to cause a denial of service (failed assertion) via a large number of connection attempts.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Lighttpd 'connections.c'远程拒绝服务攻击漏洞
Vulnerability Description
lighttpd是德国软件开发者Jan Kneschke所研发的一款开源的Web服务器,它的主要特点是仅需少量的内存及CPU资源即可达到同类网页服务器的性能。 lighttpd 1.4.16之前的版本中的connections.c中存在远程拒绝服务攻击漏洞。 Lighttpd用于限制活动连接数目的机制中存在错误,如果在lighttpd.conf中将server.max-fds设置为低于system/process限制的话,就会分配该数目的文件描述符处理各种后端类型的事件。但是,如果Lighttpd在高系统
CVSS Information
N/A
Vulnerability Type
N/A