Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2019-10082

Опубликовано: 26 сент. 2019
Источник: debian
EPSS Средний

Описание

In Apache HTTP Server 2.4.18-2.4.39, using fuzzed network input, the http/2 session handling could be made to read memory after being freed, during connection shutdown.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
apache2fixed2.4.41-1package
apache2not-affectedjessiepackage

Примечания

  • Affects upstream versions 2.4.18 to 2.4.39

  • https://httpd.apache.org/security/vulnerabilities_24.html#CVE-2019-10082

EPSS

Процентиль: 97%
0.41329
Средний

Связанные уязвимости

CVSS3: 9.1
ubuntu
больше 5 лет назад

In Apache HTTP Server 2.4.18-2.4.39, using fuzzed network input, the http/2 session handling could be made to read memory after being freed, during connection shutdown.

CVSS3: 6.5
redhat
почти 6 лет назад

In Apache HTTP Server 2.4.18-2.4.39, using fuzzed network input, the http/2 session handling could be made to read memory after being freed, during connection shutdown.

CVSS3: 9.1
nvd
больше 5 лет назад

In Apache HTTP Server 2.4.18-2.4.39, using fuzzed network input, the http/2 session handling could be made to read memory after being freed, during connection shutdown.

CVSS3: 9.1
github
около 3 лет назад

In Apache HTTP Server 2.4.18-2.4.39, using fuzzed network input, the http/2 session handling could be made to read memory after being freed, during connection shutdown.

CVSS3: 9.1
fstec
около 6 лет назад

Уязвимость реализации сетевого протокола HTTP/2 веб-сервера Apache HTTP Server, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 97%
0.41329
Средний