Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:24285
HistoryApr 10, 2020 - 12:51 a.m.

Denial Of Service (DoS)

2020-04-1000:51:33
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
10

0.425 Medium

EPSS

Percentile

97.3%

apr-util is vulnerable to denial of service. It was found that certain input could cause the apr-util library to allocate more memory than intended in the apr_brigade_split_line() function. An attacker able to provide input in small chunks to an application using the apr-util library (such as httpd) could possibly use this flaw to trigger high memory consumption.

References