CVE-2017-12171
Dashboard / Vulnerabilities / CVE-2017-12171
CVE-2017-12171
Published: 26 Jul 2018Last Modified: 10 Mar 2026
Summary:
Details: A regression was found in the Red Hat Enterprise Linux 6.9 version of httpd 2.2.15-60, causing comments in the "Allow" and "Deny" configuration lines to be parsed incorrectly. A web administrator could unintentionally allow any client to access a restricted HTTP resource.
References: , https://access.redhat.com/errata/RHSA-2017:2972, http://www.securityfocus.com/bid/101516, http://www.securitytracker.com/id/1039633, https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2017-12171
Affected packages
Package
Name:
Purl:
Affected ranges
Type: N/A
Events:
Introduced- None
Fixed -None
Affected versions
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
