CVE-2019-0217

Source
https://cve.org/CVERecord?id=CVE-2019-0217
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2019-0217.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2019-0217
Downstream
Related
Published
2019-04-08T21:29:00.843Z
Modified
2026-02-24T11:30:24.064832Z
Severity
  • 7.5 (High) CVSS_V3 - CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
Summary
[none]
Details

In Apache HTTP Server 2.4 release 2.4.38 and prior, a race condition in modauthdigest when running in a threaded server could allow a user with valid credentials to authenticate using another username, bypassing configured access control restrictions.

References

Affected packages

Git / github.com/checkstyle/checkstyle

Affected ranges

Type
GIT
Repo
https://github.com/checkstyle/checkstyle
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Last affected

Affected versions

Other
bcel
release1_1
release1_2
release1_3
release1_4
release2_0
release2_2
release2_4
release3_0
release3_1
release3_2
release3_3
release3_4
release4_0
release4_0_beta_1
release4_0_beta_2
release4_0_beta_3
release4_0_beta_4
release4_0_beta_5
release4_1
release4_2
release4_3
release4_4
release5_3
release5_4
release5_5
release5_6
release5_7
v2-branch_lmp
checkstyle-5.*
checkstyle-5.8
checkstyle-5.9
checkstyle-6.*
checkstyle-6.0
checkstyle-6.1
checkstyle-6.1.1
checkstyle-6.10
checkstyle-6.10.1
checkstyle-6.11
checkstyle-6.11.1
checkstyle-6.11.2
checkstyle-6.12
checkstyle-6.12.1
checkstyle-6.13
checkstyle-6.14
checkstyle-6.14.1
checkstyle-6.15
checkstyle-6.16
checkstyle-6.16.1
checkstyle-6.17
checkstyle-6.18
checkstyle-6.19
checkstyle-6.2
checkstyle-6.3
checkstyle-6.4
checkstyle-6.4.1
checkstyle-6.5
checkstyle-6.6
checkstyle-6.7
checkstyle-6.8
checkstyle-6.8.1
checkstyle-6.9
checkstyle-7.*
checkstyle-7.0

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2019-0217.json"