<?xml version="1.0" encoding="UTF-8"?>
<VrdaData xsi:schemaLocation="http://vrda.jpcert.or.jp/feed/xsd/vrda_data.xsd" refvuldefversion="1.2" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns="http://vrda.jpcert.or.jp">
  <VrdaDataProvider>
    <Name>NIST NVD</Name>
    <URL>http://nvd.nist.gov</URL>
  </VrdaDataProvider>
  <VrdaDataSourceType>Advisory</VrdaDataSourceType>
  <Vulinfo revisionno="1" lang="ja" invalidated="false">
    <VulinfoID>CVE-2010-1452</VulinfoID>
    <VulinfoData>
      <Title>http_server: The (1) mod_cache and (2) mod_dav modules in the Ap...</Title>
      <VulinfoDescription>
        <Overview>The (1) mod_cache and (2) mod_dav modules in the Apache HTTP Server 2.2.x before 2.2.16 allow remote attackers to cause a denial of service (process crash) via a request that lacks a path.</Overview>
      </VulinfoDescription>
      <Affected>
        <AffectedItem affectedstatus="vulnerable">
          <Lapt>cpe:/a:apache:http_server:2.2</Lapt>
        </AffectedItem>
        <AffectedItem affectedstatus="vulnerable">
          <Lapt>cpe:/a:apache:http_server:2.2.0</Lapt>
        </AffectedItem>
        <AffectedItem affectedstatus="vulnerable">
          <Lapt>cpe:/a:apache:http_server:2.2.1</Lapt>
        </AffectedItem>
        <AffectedItem affectedstatus="vulnerable">
          <Lapt>cpe:/a:apache:http_server:2.2.10</Lapt>
        </AffectedItem>
        <AffectedItem affectedstatus="vulnerable">
          <Lapt>cpe:/a:apache:http_server:2.2.11</Lapt>
        </AffectedItem>
        <AffectedItem affectedstatus="vulnerable">
          <Lapt>cpe:/a:apache:http_server:2.2.12</Lapt>
        </AffectedItem>
        <AffectedItem affectedstatus="vulnerable">
          <Lapt>cpe:/a:apache:http_server:2.2.13</Lapt>
        </AffectedItem>
        <AffectedItem affectedstatus="vulnerable">
          <Lapt>cpe:/a:apache:http_server:2.2.14</Lapt>
        </AffectedItem>
        <AffectedItem affectedstatus="vulnerable">
          <Lapt>cpe:/a:apache:http_server:2.2.15</Lapt>
        </AffectedItem>
        <AffectedItem affectedstatus="vulnerable">
          <Lapt>cpe:/a:apache:http_server:2.2.2</Lapt>
        </AffectedItem>
        <AffectedItem affectedstatus="vulnerable">
          <Lapt>cpe:/a:apache:http_server:2.2.3</Lapt>
        </AffectedItem>
        <AffectedItem affectedstatus="vulnerable">
          <Lapt>cpe:/a:apache:http_server:2.2.4</Lapt>
        </AffectedItem>
        <AffectedItem affectedstatus="vulnerable">
          <Lapt>cpe:/a:apache:http_server:2.2.5</Lapt>
        </AffectedItem>
        <AffectedItem affectedstatus="vulnerable">
          <Lapt>cpe:/a:apache:http_server:2.2.6</Lapt>
        </AffectedItem>
        <AffectedItem affectedstatus="vulnerable">
          <Lapt>cpe:/a:apache:http_server:2.2.7</Lapt>
        </AffectedItem>
        <AffectedItem affectedstatus="vulnerable">
          <Lapt>cpe:/a:apache:http_server:2.2.8</Lapt>
        </AffectedItem>
        <AffectedItem affectedstatus="vulnerable">
          <Lapt>cpe:/a:apache:http_server:2.2.9</Lapt>
        </AffectedItem>
      </Affected>
      <FactAnalysis>
        <AccessComplexity>Low</AccessComplexity>
        <AccessVector>Network</AccessVector>
        <Authentication>None</Authentication>
        <AvailabilityImpact>Partial</AvailabilityImpact>
        <ConfidentialityImpact>None</ConfidentialityImpact>
        <IntegrityImpact>None</IntegrityImpact>
      </FactAnalysis>
      <Related>
        <RelatedItem relationtype="self" origin="nistnvd">
          <URL>http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2010-1452</URL>
        </RelatedItem>
        <RelatedItem relationtype="reference" origin="other">
          <Name>CONFIRM</Name>
          <VulinfoID>https://issues.apache.org/bugzilla/show_bug.cgi?id=49246</VulinfoID>
          <URL>https://issues.apache.org/bugzilla/show_bug.cgi?id=49246</URL>
        </RelatedItem>
        <RelatedItem relationtype="reference" origin="other">
          <Name>CONFIRM</Name>
          <VulinfoID>http://httpd.apache.org/security/vulnerabilities_22.html</VulinfoID>
          <URL>http://httpd.apache.org/security/vulnerabilities_22.html</URL>
        </RelatedItem>
        <RelatedItem relationtype="reference" origin="other">
          <Name>MLIST</Name>
          <VulinfoID>[apache-announce] 20100725 [ANNOUNCEMENT] Apache HTTP Server 2.2.16 Released</VulinfoID>
          <URL>http://marc.info/?l=apache-announce&amp;m=128009718610929&amp;w=2</URL>
        </RelatedItem>
        <RelatedItem relationtype="reference" origin="other">
          <Name>Vulnerability Type</Name>
          <VulinfoID>Other (NVD-CWE-Other)</VulinfoID>
          <URL>http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1452</URL>
        </RelatedItem>
      </Related>
      <DateFirstPublished>2010-07-28T00:00:00+09:00</DateFirstPublished>
      <DateLastUpdated>2010-07-29T00:00:00+09:00</DateLastUpdated>
    </VulinfoData>
  </Vulinfo>
</VrdaData>
