Описание
Off-by-one error in the apr_brigade_vprintf function in Apache APR-util before 1.3.5 on big-endian platforms allows remote attackers to obtain sensitive information or cause a denial of service (application crash) via crafted input.
| Релиз | Статус | Примечание |
|---|---|---|
| dapper | released | 2.0.55-4ubuntu2.5 |
| devel | not-affected | uses system apr-util |
| hardy | not-affected | uses system apr-util |
| intrepid | not-affected | uses system apr-util |
| jaunty | not-affected | uses system apr-util |
| upstream | needs-triage |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| dapper | DNE | |
| devel | not-affected | 1.3.7+dfsg-1 |
| hardy | released | 1.2.12+dfsg-3ubuntu0.1 |
| intrepid | released | 1.2.12+dfsg-7ubuntu0.1 |
| jaunty | released | 1.2.12+dfsg-8ubuntu0.1 |
| upstream | released | 1.3.7+dfsg-1 |
Показывать по
EPSS
6.4 Medium
CVSS2
Связанные уязвимости
Off-by-one error in the apr_brigade_vprintf function in Apache APR-util before 1.3.5 on big-endian platforms allows remote attackers to obtain sensitive information or cause a denial of service (application crash) via crafted input.
Off-by-one error in the apr_brigade_vprintf function in Apache APR-util before 1.3.5 on big-endian platforms allows remote attackers to obtain sensitive information or cause a denial of service (application crash) via crafted input.
Off-by-one error in the apr_brigade_vprintf function in Apache APR-uti ...
Off-by-one error in the apr_brigade_vprintf function in Apache APR-util before 1.3.5 on big-endian platforms allows remote attackers to obtain sensitive information or cause a denial of service (application crash) via crafted input.
EPSS
6.4 Medium
CVSS2