Memory leak in the apr_brigade_split_line function in buckets/apr_brigade.c in the Apache Portable Runtime Utility library (aka APR-util) prior to 1.3.10, as used in the mod_reqtimeout module in the Apache HTTP Server and other software, allows remote malicious users to cause a denial of service (memory consumption) via unspecified vectors related to the destruction of an APR bucket.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
apache apr-util |
||
apache apr-util 0.9.1 |
||
apache apr-util 0.9.2 |
||
apache apr-util 0.9.3 |
||
apache apr-util 0.9.4 |
||
apache apr-util 0.9.5 |
||
apache apr-util 0.9.6 |
||
apache apr-util 0.9.7 |
||
apache apr-util 0.9.8 |
||
apache apr-util 0.9.9 |
||
apache apr-util 0.9.10 |
||
apache apr-util 0.9.11 |
||
apache apr-util 0.9.12 |
||
apache apr-util 0.9.13 |
||
apache apr-util 0.9.14 |
||
apache apr-util 0.9.15 |
||
apache apr-util 0.9.16 |
||
apache apr-util 0.9.17 |
||
apache apr-util 0.9.18 |
||
apache apr-util 1.0 |
||
apache apr-util 1.0.1 |
||
apache apr-util 1.0.2 |
||
apache apr-util 1.1.0 |
||
apache apr-util 1.1.1 |
||
apache apr-util 1.1.2 |
||
apache apr-util 1.2.1 |
||
apache apr-util 1.2.2 |
||
apache apr-util 1.2.6 |
||
apache apr-util 1.2.7 |
||
apache apr-util 1.2.8 |
||
apache apr-util 1.2.9 |
||
apache apr-util 1.2.10 |
||
apache apr-util 1.2.12 |
||
apache apr-util 1.2.13 |
||
apache apr-util 1.3.0 |
||
apache apr-util 1.3.1 |
||
apache apr-util 1.3.2 |
||
apache apr-util 1.3.3 |
||
apache apr-util 1.3.4 |
||
apache apr-util 1.3.5 |
||
apache apr-util 1.3.6 |
||
apache apr-util 1.3.7 |
||
apache apr-util 1.3.8 |
||
apache http server |