CVE-2019-10082
26.09.2019, 16:15
In Apache HTTP Server 2.4.18-2.4.39, using fuzzed network input, the http/2 session handling could be made to read memory after being freed, during connection shutdown.Enginsight
Vendor | Product | Version |
---|---|---|
apache | http_server | 2.4.18 ≤ 𝑥 ≤ 2.4.39 |
oracle | communications_element_manager | 8.0.0 |
oracle | communications_element_manager | 8.1.0 |
oracle | communications_element_manager | 8.1.1 |
oracle | communications_element_manager | 8.2.0 |
oracle | enterprise_manager_ops_center | 12.3.3 |
oracle | enterprise_manager_ops_center | 12.4.0 |
oracle | enterprise_manager_ops_center | 12.4.0.0 |
oracle | http_server | 12.2.1.3.0 |
oracle | http_server | 12.2.1.4.0 |
oracle | instantis_enterprisetrack | 17.1 ≤ 𝑥 ≤ 17.3 |
oracle | retail_xstore_point_of_service | 7.1 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
Common Weakness Enumeration
References