VYPR
Unrated severityNVD Advisory· Published Jun 9, 2003· Updated Jun 16, 2026

CVE-2003-0245

CVE-2003-0245

Description

Vulnerability in the apr_psprintf function in the Apache Portable Runtime (APR) library for Apache 2.0.37 through 2.0.45 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via long strings, as demonstrated using XML objects to mod_dav, and possibly other vectors.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

10
  • Apache/HTTP Server10 versions
    cpe:2.3:a:apache:http_server:2.0.37:*:*:*:*:*:*:*+ 9 more
    • cpe:2.3:a:apache:http_server:2.0.37:*:*:*:*:*:*:*
    • cpe:2.3:a:apache:http_server:2.0.38:*:*:*:*:*:*:*
    • cpe:2.3:a:apache:http_server:2.0.39:*:*:*:*:*:*:*
    • cpe:2.3:a:apache:http_server:2.0.40:*:*:*:*:*:*:*
    • cpe:2.3:a:apache:http_server:2.0.41:*:*:*:*:*:*:*
    • cpe:2.3:a:apache:http_server:2.0.42:*:*:*:*:*:*:*
    • cpe:2.3:a:apache:http_server:2.0.43:*:*:*:*:*:*:*
    • cpe:2.3:a:apache:http_server:2.0.44:*:*:*:*:*:*:*
    • cpe:2.3:a:apache:http_server:2.0.45:*:*:*:*:*:*:*
    • (no CPE)range: >=2.0.37, <=2.0.45

Patches

Vulnerability mechanics

References

22

News mentions

0

No linked articles in our index yet.