CyberRota Analysis
AI-GeneratedApache Answer versions up to 2.0.1 are vulnerable to a denial of service attack due to improper handling of the Accept-Language header, allowing unauthenticated attackers to induce excessive CPU consumption. Organizations using this software should prioritize upgrading to version 2.0.2 to mitigate the risk of service disruption.
Original NVD Description
Improper Handling of Length Parameter Inconsistency vulnerability in Apache Answer. This issue affects Apache Answer: through 2.0.1. Unauthenticated attackers can cause a denial of service via a specially crafted Accept-Language header that triggers excessive CPU consumption during parsing. Users are recommended to upgrade to version 2.0.2, which fixes the issue.
Related CVEs
Other vulnerabilities affecting the same vendor(s)