CVE-2004-0885
published 2004-11-03CVE-2004-0885: The mod_ssl module in Apache 2.0.35 through 2.0.52, when using the "SSLCipherSuite" directive in directory or location context, allows remote clients to bypass…
PriorityP336high7.5CVSS 2.0
AVNACLAuNCPIPAP
EPSS
13.84%
96.1th percentile
The mod_ssl module in Apache 2.0.35 through 2.0.52, when using the "SSLCipherSuite" directive in directory or location context, allows remote clients to bypass intended restrictions by using any cipher suite that is allowed by the virtual host configuration.
Affected
19 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apache | http_server | — | — |
| apache | http_server | — | — |
| apache | http_server | — | — |
| apache | http_server | — | — |
| apache | http_server | — | — |
| apache | http_server | — | — |
| apache | http_server | — | — |
| apache | http_server | — | — |
| apache | http_server | — | — |
| apache | http_server | — | — |
| apache | http_server | — | — |
| apache | http_server | — | — |
| apache | http_server | — | — |
| apache | http_server | — | — |
| apache | http_server | — | — |
| apache | http_server | — | — |
| apache | http_server | — | — |
| apache | http_server | — | — |
| debian | apache2 | < apache2 2.0.52-2 (bookworm) | apache2 2.0.52-2 (bookworm) |
CVSS provenance
nvdv2.07.5HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
osv7.5HIGH
vendor_debian7.5HIGH
vendor_redhat7.5HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-xxhg-c875-v6qf: The mod_ssl module in Apache 2
ghsa_unreviewed·2022-04-29
CVE-2004-0885 [HIGH] GHSA-xxhg-c875-v6qf: The mod_ssl module in Apache 2
The mod_ssl module in Apache 2.0.35 through 2.0.52, when using the "SSLCipherSuite" directive in directory or location context, allows remote clients to bypass intended restrictions by using any cipher suite that is allowed by the virtual host configuration.
OSV
CVE-2004-0885: The mod_ssl module in Apache 2
osv·2004-11-03·CVSS 7.5
CVE-2004-0885 [HIGH] CVE-2004-0885: The mod_ssl module in Apache 2
The mod_ssl module in Apache 2.0.35 through 2.0.52, when using the "SSLCipherSuite" directive in directory or location context, allows remote clients to bypass intended restrictions by using any cipher suite that is allowed by the virtual host configuration.
Red Hat
mod_ssl SSLCipherSuite bypass
vendor_redhat·2004-10-05·CVSS 7.5
CVE-2004-0885 [HIGH] mod_ssl SSLCipherSuite bypass
mod_ssl SSLCipherSuite bypass
The mod_ssl module in Apache 2.0.35 through 2.0.52, when using the "SSLCipherSuite" directive in directory or location context, allows remote clients to bypass intended restrictions by using any cipher suite that is allowed by the virtual host configuration.
Debian
CVE-2004-0885: apache2 - The mod_ssl module in Apache 2.0.35 through 2.0.52, when using the "SSLCipherSui...
vendor_debian·2004·CVSS 7.5
CVE-2004-0885 [HIGH] CVE-2004-0885: apache2 - The mod_ssl module in Apache 2.0.35 through 2.0.52, when using the "SSLCipherSui...
The mod_ssl module in Apache 2.0.35 through 2.0.52, when using the "SSLCipherSuite" directive in directory or location context, allows remote clients to bypass intended restrictions by using any cipher suite that is allowed by the virtual host configuration.
Scope: local
bookworm: resolved (fixed in 2.0.52-2)
bullseye: resolved (fixed in 2.0.52-2)
forky: resolved (fixed in 2.0.52-2)
sid: resolved (fixed in 2.0.52-2)
trixie: resolved (fixed in 2.0.52-2)
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2004-0885 mod_ssl SSLCipherSuite bypass
bugzilla·2008-01-29·CVSS 7.5
CVE-2004-0885 [HIGH] CVE-2004-0885 mod_ssl SSLCipherSuite bypass
CVE-2004-0885 mod_ssl SSLCipherSuite bypass
Common Vulnerabilities and Exposures assigned an identifier CVE-2004-0885 to the following vulnerability:
The mod_ssl module in Apache 2.0.35 through 2.0.52, when using the
"
SSLCipherSuite
"
directive in directory or location context, allows remote clients to bypass intended restrictions by using any cipher suite that is allowed by the virtual host configuration.
References:
http://www.apacheweek.com/features/security-20
http://issues.apache.org/bugzilla/show_bug.cgi?id=31505
http://support.avaya.com/elmodocs2/security/ASA-2006-081.htm
http://lists.apple.com/archives/security-announce/2005/Aug/msg00000.html
http://lists.apple.com/archives/security-announce/2005//Aug/msg00001.html
http://www1.itrc.hp.com/service/cki/docDisplay.do?docId=HPSBUX
Bugzilla
CVE-2004-0488 mod_ssl flaws (CVE-2004-0885 CVE-2005-2700)
bugzilla·2005-10-25·CVSS 7.5
CVE-2004-0488 [HIGH] CVE-2004-0488 mod_ssl flaws (CVE-2004-0885 CVE-2005-2700)
CVE-2004-0488 mod_ssl flaws (CVE-2004-0885 CVE-2005-2700)
Multiple flaws in Stronghold 4.0 mod_ssl
A stack buffer overflow in mod_ssl. If FakeBasicAuth had been enabled, a
carefully crafted client certificate sent to mod_ssl can cause a stack
overflow. In order to exploit this issue, the malicious certificate would
have to be signed by a Certificate Authority which mod_ssl is configured to
trust. (CVE-2004-0488)
The mod_ssl module, when using the "SSLCipherSuite" directive in directory
or location context, allowed remote clients to bypass intended restrictions
by using any cipher suite that is allowed by the virtual host
configuration. (CVE-2004-0885)
A flaw in mod_ssl triggered if a virtual host was configured using
"SSLVerifyClient optional" and a directive "SSLVerifyClient required"
http://issues.apache.org/bugzilla/show_bug.cgi?id=31505http://lists.apple.com/archives/security-announce/2005//Aug/msg00001.htmlhttp://lists.apple.com/archives/security-announce/2005/Aug/msg00000.htmlhttp://marc.info/?l=bugtraq&m=109786159119069&w=2http://secunia.com/advisories/19072http://sunsolve.sun.com/search/document.do?assetkey=1-26-102198-1http://support.avaya.com/elmodocs2/security/ASA-2006-081.htmhttp://www.apacheweek.com/features/security-20http://www.redhat.com/support/errata/RHSA-2004-562.htmlhttp://www.redhat.com/support/errata/RHSA-2004-600.htmlhttp://www.redhat.com/support/errata/RHSA-2005-816.htmlhttp://www.redhat.com/support/errata/RHSA-2008-0261.htmlhttp://www.securityfocus.com/bid/11360http://www.ubuntu.com/usn/usn-177-1http://www.vupen.com/english/advisories/2006/0789http://www1.itrc.hp.com/service/cki/docDisplay.do?docId=HPSBUX01123https://exchange.xforce.ibmcloud.com/vulnerabilities/17671https://lists.apache.org/thread.html/54a42d4b01968df1117cea77fc53d6beb931c0e05936ad02af93e9ac%40%3Ccvs.httpd.apache.org%3Ehttps://lists.apache.org/thread.html/5df9bfb86a3b054bb985a45ff9250b0332c9ecc181eec232489e7f79%40%3Ccvs.httpd.apache.org%3Ehttps://lists.apache.org/thread.html/r0276683d8e1e07153fc8642618830ac0ade85b9ae0dc7b07f63bb8fc%40%3Ccvs.httpd.apache.org%3Ehttps://lists.apache.org/thread.html/r2cb985de917e7da0848c440535f65a247754db8b2154a10089e4247b%40%3Ccvs.httpd.apache.org%3Ehttps://lists.apache.org/thread.html/r5001ecf3d6b2bdd0b732e527654248abb264f08390045d30709a92f6%40%3Ccvs.httpd.apache.org%3Ehttps://lists.apache.org/thread.html/r734a07156abf332d5ab27fb91d9d962cacfef4f3681e44056f064fa8%40%3Ccvs.httpd.apache.org%3Ehttps://lists.apache.org/thread.html/r8828e649175df56f1f9e3919938ac7826128525426e2748f0ab62feb%40%3Ccvs.httpd.apache.org%3Ehttps://lists.apache.org/thread.html/r9e8622254184645bc963a1d47c5d47f6d5a36d6f080d8d2c43b2b142%40%3Ccvs.httpd.apache.org%3Ehttps://lists.apache.org/thread.html/r9f93cf6dde308d42a9c807784e8102600d0397f5f834890708bf6920%40%3Ccvs.httpd.apache.org%3Ehttps://lists.apache.org/thread.html/rd65d8ba68ba17e7deedafbf5bb4899f2ae4dad781d21b931c2941ac3%40%3Ccvs.httpd.apache.org%3Ehttps://lists.apache.org/thread.html/re895fc1736d25c8cf57e102c871613b8aeec9ea26fd8a44e7942b5ab%40%3Ccvs.httpd.apache.org%3Ehttps://lists.apache.org/thread.html/rf6449464fd8b7437704c55f88361b66f12d5b5f90bcce66af4be4ba9%40%3Ccvs.httpd.apache.org%3Ehttps://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10384http://issues.apache.org/bugzilla/show_bug.cgi?id=31505http://lists.apple.com/archives/security-announce/2005//Aug/msg00001.htmlhttp://lists.apple.com/archives/security-announce/2005/Aug/msg00000.htmlhttp://marc.info/?l=bugtraq&m=109786159119069&w=2http://secunia.com/advisories/19072http://sunsolve.sun.com/search/document.do?assetkey=1-26-102198-1http://support.avaya.com/elmodocs2/security/ASA-2006-081.htmhttp://www.apacheweek.com/features/security-20http://www.redhat.com/support/errata/RHSA-2004-562.htmlhttp://www.redhat.com/support/errata/RHSA-2004-600.htmlhttp://www.redhat.com/support/errata/RHSA-2005-816.htmlhttp://www.redhat.com/support/errata/RHSA-2008-0261.htmlhttp://www.securityfocus.com/bid/11360http://www.ubuntu.com/usn/usn-177-1http://www.vupen.com/english/advisories/2006/0789http://www1.itrc.hp.com/service/cki/docDisplay.do?docId=HPSBUX01123https://exchange.xforce.ibmcloud.com/vulnerabilities/17671https://lists.apache.org/thread.html/54a42d4b01968df1117cea77fc53d6beb931c0e05936ad02af93e9ac%40%3Ccvs.httpd.apache.org%3Ehttps://lists.apache.org/thread.html/5df9bfb86a3b054bb985a45ff9250b0332c9ecc181eec232489e7f79%40%3Ccvs.httpd.apache.org%3Ehttps://lists.apache.org/thread.html/r0276683d8e1e07153fc8642618830ac0ade85b9ae0dc7b07f63bb8fc%40%3Ccvs.httpd.apache.org%3Ehttps://lists.apache.org/thread.html/r2cb985de917e7da0848c440535f65a247754db8b2154a10089e4247b%40%3Ccvs.httpd.apache.org%3Ehttps://lists.apache.org/thread.html/r5001ecf3d6b2bdd0b732e527654248abb264f08390045d30709a92f6%40%3Ccvs.httpd.apache.org%3Ehttps://lists.apache.org/thread.html/r734a07156abf332d5ab27fb91d9d962cacfef4f3681e44056f064fa8%40%3Ccvs.httpd.apache.org%3Ehttps://lists.apache.org/thread.html/r8828e649175df56f1f9e3919938ac7826128525426e2748f0ab62feb%40%3Ccvs.httpd.apache.org%3Ehttps://lists.apache.org/thread.html/r9e8622254184645bc963a1d47c5d47f6d5a36d6f080d8d2c43b2b142%40%3Ccvs.httpd.apache.org%3Ehttps://lists.apache.org/thread.html/r9f93cf6dde308d42a9c807784e8102600d0397f5f834890708bf6920%40%3Ccvs.httpd.apache.org%3Ehttps://lists.apache.org/thread.html/rd65d8ba68ba17e7deedafbf5bb4899f2ae4dad781d21b931c2941ac3%40%3Ccvs.httpd.apache.org%3Ehttps://lists.apache.org/thread.html/re895fc1736d25c8cf57e102c871613b8aeec9ea26fd8a44e7942b5ab%40%3Ccvs.httpd.apache.org%3Ehttps://lists.apache.org/thread.html/rf6449464fd8b7437704c55f88361b66f12d5b5f90bcce66af4be4ba9%40%3Ccvs.httpd.apache.org%3Ehttps://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10384
2004-11-03
Published