CVE Tracker

CVE-2026-34502 @ mufasa

Status
not_applicable
Priority
7.0
Match score
4.0
Risk
DoS Remote
CVSS
7.5 HIGH
Reason
cpe: apr-util; pkgs: apr-util; version: in-range: apr-util-1.5.2-6.el7_9.1; risk:dos
Created
2026-08-08T10:15:18Z
Updated
2026-08-22T10:16:17Z
Closed
2026-08-08T16:35:45Z

Package interrogation (copy)

Run on the host — click to copy a command. RPM

PackageCommands
apr-util-1.5.2-6.el7_9.1

Inventory lookup

Search package inventory across systems, then return here. Create a ticket on systems the matcher missed.

Clear

Suggestions: apr-util

SystemMatchesTicket for CVE-2026-34502
morris apr-util 1.5.2; ea-apr-util 1.6.5; ea-apr-util-devel 1.6.5 not_applicable open
mufasa apr-util 1.5.2; ea-apr-util 1.6.5 not_applicable open

Same product CVEs in your queue

Other tickets that look like the same product (from match reason). Relate them here to triage this CVE as the primary.

CVECVSSKEVSystemsStatus MatchedAlready related
CVE-2026-32327 9.1 morris, mufasa affects apr-util
CVE-2025-49506 7.5 morris, mufasa not_applicable apr-util → CVE-2026-32327
CVE-2026-34501 7.5 morris, mufasa not_applicable apr-util → CVE-2026-32327

Related CVE (same fix)

This CVE is subordinated to primary CVE-2026-32327 — same product as CVE-2026-32327

Host OS / kernel

OS
CloudLinux release 7.9 (Boris Yegorov) (7.9) · cloudlinux
Arch
x86_64
kernel_release
uname -r → 3.10.0-962.3.2.lve1.5.89.el7.x86_64
kernel_version
uname -v → #1 SMP Thu Jul 9 15:55:31 UTC 2026

For Linux kernel CVEs, kernel_version (Debian packaging / build string) often decides fixed vs not; kernel_release is used for upstream NVD range compares.

Same CVE on other hosts

Open the ticket for this CVE on another system.

System Status Priority Updated
morris not_applicable 7.0 2026-08-22T10:16:17Z Open

Description

Heap-based Buffer Overflow vulnerability in Apache Portable Runtime Utility memcached client

This issue affects Apache Portable Runtime Utility: from 1.3.0 through 1.6.3.

Determination

Related to primary CVE-2026-32327: same product as CVE-2026-32327

Update status

Also apply to other systems with this CVE:

Add note only

Also add note on:

Mitigation log

2026-08-08T16:35:45Z — not_applicable
Related to primary CVE-2026-32327: same product as CVE-2026-32327

References

NVD: CVE-2026-34502