Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-cxw3-v6f8-2cpm

Опубликовано: 14 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 4.7

Описание

Apache Portable Runtime Utility (APR-util) 1.6.0 and prior fail to validate the integrity of SDBM database files used by apr_sdbm*() functions, resulting in a possible out of bound read access. A local user with write access to the database can make a program or process using these functions crash, and cause a denial of service.

Apache Portable Runtime Utility (APR-util) 1.6.0 and prior fail to validate the integrity of SDBM database files used by apr_sdbm*() functions, resulting in a possible out of bound read access. A local user with write access to the database can make a program or process using these functions crash, and cause a denial of service.

EPSS

Процентиль: 42%
0.00201
Низкий

4.7 Medium

CVSS3

Дефекты

CWE-125

Связанные уязвимости

CVSS3: 4.7
ubuntu
больше 8 лет назад

Apache Portable Runtime Utility (APR-util) 1.6.0 and prior fail to validate the integrity of SDBM database files used by apr_sdbm*() functions, resulting in a possible out of bound read access. A local user with write access to the database can make a program or process using these functions crash, and cause a denial of service.

CVSS3: 5.5
redhat
больше 8 лет назад

Apache Portable Runtime Utility (APR-util) 1.6.0 and prior fail to validate the integrity of SDBM database files used by apr_sdbm*() functions, resulting in a possible out of bound read access. A local user with write access to the database can make a program or process using these functions crash, and cause a denial of service.

CVSS3: 4.7
nvd
больше 8 лет назад

Apache Portable Runtime Utility (APR-util) 1.6.0 and prior fail to validate the integrity of SDBM database files used by apr_sdbm*() functions, resulting in a possible out of bound read access. A local user with write access to the database can make a program or process using these functions crash, and cause a denial of service.

CVSS3: 4.7
debian
больше 8 лет назад

Apache Portable Runtime Utility (APR-util) 1.6.0 and prior fail to val ...

suse-cvrf
около 8 лет назад

Security update for libapr-util1

EPSS

Процентиль: 42%
0.00201
Низкий

4.7 Medium

CVSS3

Дефекты

CWE-125