Description
Apache HTTP Server 2.4.53 and earlier may crash or disclose information due to a read beyond bounds in ap_strcmp_match() when provided with an extremely large input buffer. While no code distributed with the server can be coerced into such a call, third-party modules or lua scripts that use ap_strcmp_match() may hypothetically be affected.
Remediation
References
Related Vulnerabilities
WordPress Plugin Knight Lab Timeline Cross-Site Scripting (3.6.6)
Oracle JRE CVE-2013-1481 Vulnerability (CVE-2013-1481)
MySQL CVE-2020-14623 Vulnerability (CVE-2020-14623)
Drupal Core 4.6.x Denial of Service (4.6.0 - 4.6.10)
WordPress Plugin Survey Maker-Best WordPress Survey Unspecified Vulnerability (3.2.0)