CVE-2014-8566: Oracle Linux

Medium severity, CVSS 6.4. EPSS: 2.7% chance of exploitation in the next 30 days.

The mod_auth_mellon module before 0.8.1 allows remote attackers to obtain sensitive information or cause a denial of service (segmentation fault) via unspecified vectors related to a "session overflow" involving "sessions overlapping in memory."

Affected products

  • Oracle Linux: version 6 only
  • Uninett Mod Auth Mellon: up to and including 0.8.0

Published 2014-11-15. Last modified 2026-06-17.