CVE-2012-0031

Publication date 18 January 2012

Last updated 24 July 2024


Ubuntu priority

scoreboard.c in the Apache HTTP Server 2.2.21 and earlier might allow local users to cause a denial of service (daemon crash during shutdown) or possibly have unspecified other impact by modifying a certain type field within a scoreboard shared memory segment, leading to an invalid call to the free function.

Status

No maintained releases are affected by this CVE.

Package Ubuntu Release Status
apache2 11.10 oneiric
Fixed 2.2.20-1ubuntu1.2
11.04 natty
Fixed 2.2.17-1ubuntu1.5
10.10 maverick
Fixed 2.2.16-1ubuntu3.5
10.04 LTS lucid
Fixed 2.2.14-5ubuntu8.8
8.04 LTS hardy
Fixed 2.2.8-1ubuntu0.23

Patch details

For informational purposes only. We recommend not to cherry-pick updates. How can I get the fixes?

Package Patch details
apache2

References

Related Ubuntu Security Notices (USN)

    • USN-1368-1
    • Apache HTTP Server vulnerabilities
    • 16 February 2012

Other references