CVE-2010-1623
Publicada el · Actualizada el
8Vexday Risk Score
Sin señal de explotación. Ningún artefacto público de explotación conocido hasta ahora.
ssvc Trackepss 20%
probabilidad de explotación
20%top 3% de las CVE
explotación observada
noninguna fuente lo reporta
Memory leak in the apr_brigade_split_line function in buckets/apr_brigade.c in the Apache Portable Runtime Utility library (aka APR-util) before 1.3.10, as used in the mod_reqtimeout module in the Apache HTTP Server and other software, allows remote attackers to cause a denial of service (memory consumption) via unspecified vectors related to the destruction of an APR bucket.
Productos afectados
n/a · n/aReferencias
http://blogs.sun.com/security/entry/cve_2010_1623_memory_leakhttp://lists.fedoraproject.org/pipermail/package-announce/2010-October/049885.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2010-October/049939.htmlhttp://lists.opensuse.org/opensuse-security-announce/2011-11/msg00011.htmlhttp://marc.info/?l=bugtraq&m=130168502603566&w=2http://secunia.com/advisories/41701http://secunia.com/advisories/42015http://secunia.com/advisories/42361http://secunia.com/advisories/42367http://secunia.com/advisories/42403http://secunia.com/advisories/42537http://secunia.com/advisories/43211