VDB

GCVE-110-MAGEIA-2026-364

GCVE-110-MAGEIA-2026-364
Advisory Published
Vulnetix · Advisory published September 2, 2026
Apache Portable Runtime Utility: apr_password_validate() vulnerable to timing attack. (CVE-2025-49506) Apache Portable Runtime Utility: apr-util XML stack recursion crash. (CVE-2026-32327) Apache Portable Runtime Utility: SQL Injection in apr_dbd_oracle. (CVE-2026-34191) Apache Portable Runtime Utility: Heap buffer overflow in APR redis client. (CVE-2026-34501) Apache Portable Runtime Utility: Heap buffer overflow in APR memcached client. (CVE-2026-34502)

Affected Products

VendorProductVersionsPlatforms
Mageiaapr-util0 (affected), 1.6.3-3.1.mga10 (unaffected)
Mageiaapr-util0 (affected), 1.6.3-1.1.mga9 (unaffected)

Browse GCVE Records

1,469 records in the GCVE database · Updated September 3, 2026

No matching records found.

Explore Further

Investigate this vulnerability in the interactive console or download the raw GCVE record.

$ Console Community · 100/wk Open console ›