Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An out-of-bounds read in the rewrite function at /modules/caddyhttp/rewrite/rewrite.go in Caddy v2.5.1 allows attackers to cause a Denial of Service (DoS) via a crafted URI. Note: This has been disputed as a bug, not a security vulnerability, in the Caddy web server that emerged when an administrator's bad configuration containing a malformed request URI caused the server to return an empty reply instead of a valid HTTP response to the client.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Caddy 缓冲区错误漏洞
Vulnerability Description
Caddy是Caddy公司的一款开源、跨平台的HTTP/Web服务器。 Caddy v2.5.1版本存在安全漏洞,该漏洞源于 /modules/caddyhttp/rewrite/rewrite.go 的 rewrite 函数存在越界读取。攻击者利用该漏洞通过特制的 URI 导致拒绝服务。
CVSS Information
N/A
Vulnerability Type
N/A