Optionsbleed - HTTP OPTIONS method can leak Apache's server memory
https://blog.fuzzing-project.org/60-Optionsbleed-HTTP-OPTIONS-method-can-leak-Apaches-server-memory.html [blog.fuzzing-project.org]
2017-09-19 21:07
A scan of the Alexa Top 1 Million revealed something strange: Plenty of servers sent out an “Allow” header with what looked like corrupted data.
Amazing, detected in the wild years ago, but consequences overlooked. Figure 6b, https://arxiv.org/pdf/1405.2330.pdf
source: L