Skip to main content

Vendor/product archive

apache / apr-util CVEs

Beta · best-effort

6 CVEs tagged to apache / apr-util1 Critical, 1 High, 4 Medium, 0 Low, 0 Unrated.

CVE-2011-1928

Published May 24, 2011

The fnmatch implementation in apr_fnmatch.c in the Apache Portable Runtime (APR) library 1.4.3 and 1.4.4, and the Apache HTTP Server 2.2.18, allows remote attackers to cause a den…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2010-1623

Published Oct 4, 2010

Memory leak in the apr_brigade_split_line function in buckets/apr_brigade.c in the Apache Portable Runtime Utility library (aka APR-util) before 1.3.10, as used in the mod_reqtime…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2009-2412

Published Aug 6, 2009

Multiple integer overflows in the Apache Portable Runtime (APR) library and the Apache Portable Utility library (aka APR-util) 0.9.x and 1.3.x allow remote attackers to cause a de…

CVSS 10.0 · Critical
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2009-0023

Published Jun 8, 2009

The apr_strmatch_precompile function in strmatch/apr_strmatch.c in Apache APR-util before 1.3.5 allows remote attackers to cause a denial of service (daemon crash) via crafted inp…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-6 of 6 CVEsPage 1 of 1