CVE Database
/

CVE-2009-0023

Back to search

CVE-2009-0023

Published: Jun 6, 2009

Modified: Aug 7, 2024

PUBLISHED

Description

The apr_strmatch_precompile function in strmatch/apr_strmatch.c in Apache APR-util before 1.3.5 allows remote attackers to cause a denial of service (daemon crash) via crafted input involving (1) a .htaccess file used with the Apache HTTP Server, (2) the SVNMasterURI directive in the mod_dav_svn module in the Apache HTTP Server, (3) the mod_apreq2 module for the Apache HTTP Server, or (4) an application that uses the libapreq2 library, which triggers a heap-based buffer underflow.

VendorProductVersions

n/a

n/a

affected
n/a

References

35487
third-party-advisory
x_refsource_SECUNIA
DSA-1812
vendor-advisory
x_refsource_DEBIAN
ADV-2009-1907
vdb-entry
x_refsource_VUPEN
FEDORA-2009-5969
vendor-advisory
x_refsource_FEDORA
35444
third-party-advisory
x_refsource_SECUNIA
PK88341
vendor-advisory
x_refsource_AIXAPAR
MDVSA-2009:131
vendor-advisory
x_refsource_MANDRIVA
35360
third-party-advisory
x_refsource_SECUNIA
35395
third-party-advisory
x_refsource_SECUNIA
PK99478
vendor-advisory
x_refsource_AIXAPAR
oval:org.mitre.oval:def:12321
vdb-entry
signature
x_refsource_OVAL
35284
third-party-advisory
x_refsource_SECUNIA
PK91241
vendor-advisory
x_refsource_AIXAPAR
20091112 rPSA-2009-0144-1 apr-util
mailing-list
x_refsource_BUGTRAQ
35221
vdb-entry
x_refsource_BID
35843
third-party-advisory
x_refsource_SECUNIA
FEDORA-2009-6014
vendor-advisory
x_refsource_FEDORA
RHSA-2009:1108
vendor-advisory
x_refsource_REDHAT
HPSBUX02612
vendor-advisory
x_refsource_HP
35797
third-party-advisory
x_refsource_SECUNIA
GLSA-200907-03
vendor-advisory
x_refsource_GENTOO
oval:org.mitre.oval:def:10968
vdb-entry
signature
x_refsource_OVAL
FEDORA-2009-6261
vendor-advisory
x_refsource_FEDORA
USN-786-1
vendor-advisory
x_refsource_UBUNTU
34724
third-party-advisory
x_refsource_SECUNIA
37221
third-party-advisory
x_refsource_SECUNIA
35565
third-party-advisory
x_refsource_SECUNIA
ADV-2009-3184
vdb-entry
x_refsource_VUPEN
SSRT100345
vendor-advisory
x_refsource_HP
SSA:2009-167-02
vendor-advisory
x_refsource_SLACKWARE
APPLE-SA-2009-11-09-1
vendor-advisory
x_refsource_APPLE
MDVSA-2013:150
vendor-advisory
x_refsource_MANDRIVA
35710
third-party-advisory
x_refsource_SECUNIA
RHSA-2009:1107
vendor-advisory
x_refsource_REDHAT
USN-787-1
vendor-advisory
x_refsource_UBUNTU

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now