Skip to content

CVE-2014-0118

The deflate_in_filter function in mod_deflate.c in the mod_deflate module in the Apache HTTP Server before 2.4.10, when request body decompression is enabled, allows remote attackers to cause a denial of service (resource consumption) via crafted request data that decompresses to a much larger size.

View on NVD

Severity

N/A

EPSS

Probability of exploitation (next 30 days): 0.4133 (41.3%)
Percentile: 97.4%
EPSS: 2026-05-06

Affects

apache:http_serverdebian:debian_linuxredhat:jboss_enterprise_application_platformredhat:enterprise_linux

Technical description

The deflate_in_filter function in mod_deflate.c in the mod_deflate module in the Apache HTTP Server before 2.4.10, when request body decompression is enabled, allows remote attackers to cause a denial of service (resource consumption) via crafted request data that decompresses to a much larger size.

Published: 7/20/2014, 11:12:48 AM
Last modified: 5/6/2026, 10:30:45 PM

References

HomeEventsBlogResourcesTeam