cbcvebase.
CVE-2012-0031
published 2012-01-18

CVE-2012-0031: scoreboard.c in the Apache HTTP Server 2.2.21 and earlier might allow local users to cause a denial of service (daemon crash during shutdown) or possibly have…

PriorityP422medium4.6CVSS 2.0
AVLACLAuNCPIPAP
EXPLOIT
EPSS
2.90%
85.4th percentile
scoreboard.c in the Apache HTTP Server 2.2.21 and earlier might allow local users to cause a denial of service (daemon crash during shutdown) or possibly have unspecified other impact by modifying a certain type field within a scoreboard shared memory segment, leading to an invalid call to the free function.

Affected

16 ranges
VendorProductVersion rangeFixed in
apachehttp_server>= 2.0.0 < 2.0.652.0.65
apachehttp_server>= 2.2.0 < 2.2.222.2.22
debianapache2< apache2 2.2.22-1 (bookworm)apache2 2.2.22-1 (bookworm)
debiandebian_linux
debiandebian_linux
debiandebian_linux
opensuseopensuse
redhatenterprise_linux_desktop
redhatenterprise_linux_eus
redhatenterprise_linux_server
redhatenterprise_linux_server_aus
redhatenterprise_linux_workstation
redhatjboss_enterprise_web_server
redhatstorage
suselinux_enterprise_server
suselinux_enterprise_software_development_kit

CVSS provenance

nvdv2.04.6MEDIUMAV:L/AC:L/Au:N/C:P/I:P/A:P
osv4.6MEDIUM
vendor_debian4.6LOW
vendor_redhat4.6MEDIUM
vendor_ubuntu4.4MEDIUM
CVEs like this are exactly what “Exploited This Week” covers.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.