PHP Apache Exploit: Apache 2 Local [DoS] Denial of Service Vulnerability

November 21st, 2008
PHP

Image via Wikipedia

Howdy? I will share you an exploit, an outdated one, but it might still works if you want to test it on PHP versions prior to 5.1.0 final and 4.4.1 final.

This info might be old. But since there are many people out there running outdated version of PHP/Apache on their machine, this should works on unpatched one.

This Apache PHP exploit can crash the box with some kind of DoS attack. But it’s local. It’s mainly caused by Apache2handler SAPI, which triggers segmentation fault and then the system will crash. This issue affects PHP versions prior to 5.1.0 final and 4.4.1 final.

More info and solution can be found here.


  1. No comments yet.
  1. No trackbacks yet.