← Vulnerability feed

Vulnerability record · CVE-2010-3872 · published 22 November 2010

CVE-2010-3872: Apache mod fcgid stack-based buffer overflow vulnerability

Apache · Mod Fcgid

A flaw was found in the mod_fcgid module of httpd. A malformed FastCGI response may result in a stack-based buffer overflow in the modules/fcgid/fcgid_bucket.c file in the fcgid_header_bucket_read() function, resulting in an application crash.

7.5 CVSS 3.1 High EPSS 2.8% · top 14.2% CWE-121 · Stack-based buffer overflowCWE-189 · CWE-189
7.5CVSS 3.1 base score, v2 7.2
2.8%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
40References
16 Jun 2026Last modified by NVD

Description

A flaw was found in the mod_fcgid module of httpd. A malformed FastCGI response may result in a stack-based buffer overflow in the modules/fcgid/fcgid_bucket.c file in the fcgid_header_bucket_read() function, resulting in an application crash.

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

LinkTags
http://lists.fedoraproject.org/pipermail/package-announce/2010-November/050930.html
http://lists.fedoraproject.org/pipermail/package-announce/2010-November/050932.html
http://lists.fedoraproject.org/pipermail/package-announce/2010-November/050976.html
http://lists.opensuse.org/opensuse-security-announce/2011-08/msg00004.html
http://lists.opensuse.org/opensuse-security-announce/2011-08/msg00005.html
http://osvdb.org/69275
http://secunia.com/advisories/42288 Vendor Advisory
http://secunia.com/advisories/42302 Vendor Advisory
http://secunia.com/advisories/42815
http://www.debian.org/security/2010/dsa-2140
http://www.gossamer-threads.com/lists/apache/announce/391406
http://www.securityfocus.com/bid/44900
http://www.vupen.com/english/advisories/2010/2997 Vendor Advisory
http://www.vupen.com/english/advisories/2010/2998 Vendor Advisory
http://www.vupen.com/english/advisories/2011/0031
https://access.redhat.com/security/cve/CVE-2010-3872
https://bugzilla.redhat.com/show_bug.cgi?id=2248172
https://exchange.xforce.ibmcloud.com/vulnerabilities/63303
https://github.com/apache/httpd-mod_fcgid/commit/b1afa70840b4ab4e6fbc12ac8798b2f3ccc336b2
https://issues.apache.org/bugzilla/show_bug.cgi?id=49406 Patch
http://lists.fedoraproject.org/pipermail/package-announce/2010-November/050930.html
http://lists.fedoraproject.org/pipermail/package-announce/2010-November/050932.html
http://lists.fedoraproject.org/pipermail/package-announce/2010-November/050976.html
http://lists.opensuse.org/opensuse-security-announce/2011-08/msg00004.html
http://lists.opensuse.org/opensuse-security-announce/2011-08/msg00005.html
http://osvdb.org/69275
http://secunia.com/advisories/42288 Vendor Advisory
http://secunia.com/advisories/42302 Vendor Advisory
http://secunia.com/advisories/42815
http://www.debian.org/security/2010/dsa-2140
http://www.gossamer-threads.com/lists/apache/announce/391406
http://www.securityfocus.com/bid/44900
http://www.vupen.com/english/advisories/2010/2997 Vendor Advisory
http://www.vupen.com/english/advisories/2010/2998 Vendor Advisory
http://www.vupen.com/english/advisories/2011/0031
https://access.redhat.com/security/cve/CVE-2010-3872
https://bugzilla.redhat.com/show_bug.cgi?id=2248172
https://exchange.xforce.ibmcloud.com/vulnerabilities/63303
https://github.com/apache/httpd-mod_fcgid/commit/b1afa70840b4ab4e6fbc12ac8798b2f3ccc336b2
https://issues.apache.org/bugzilla/show_bug.cgi?id=49406 Patch

Track CVE-2010-3872 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

8.8CVE-2016-1000104Apache mod fcgid improper input validation vulnerabilityA security Bypass vulnerability exists in the FcgidPassHeader Proxy in mod_fcgid through 2016-07-07.EPSS 2.2%7.5CVE-2013-4365Apache mod fcgid out-of-bounds write vulnerabilityHeap-based buffer overflow in the fcgid_header_bucket_read function in fcgid_bucket.c in the mod_fcgid module before 2.3.9 for the Apache HTTP Server…EPSS 13%5.0CVE-2012-1181Apache mod fcgid memory buffer overflow vulnerabilityfcgid_spawn_ctl.c in the mod_fcgid module 2.3.6 for the Apache HTTP Server does not recognize the FcgidMaxProcessesPerClass directive for a virtual h…EPSS 4.8%8.8CVE-2026-7273Zyxel gs1900-8 firmware stack-based buffer overflow vulnerabilityA stack-based buffer overflow vulnerability in the CGI program of Zyxel GS1900-48HPv2 firmware versions through 2.90(ABTQ.1)C0 could allow a LAN-base…KEVEPSS 2.5%8.1CVE-2021-27137DD-WRT UPnP M-SEARCH stack buffer overflowDD-WRT before 45724 contains an unsafe strcpy in the UPnP SSDP handling code (ssdp_msearch), reachable via an M-SEARCH request, that overflows a fixe…KEVEPSS 4.0%analysed9.3CVE-2025-53521F5 BIG-IP APM stack buffer overflow allows remote code executionA stack-based buffer overflow (CWE-121) exists in F5 BIG-IP Access Policy Manager when an APM access policy is configured on a virtual server. Specif…KEVEPSS 2.3%analysed8.8CVE-2008-0015Microsoft DirectShow Video ActiveX Control Stack Buffer OverflowA stack-based buffer overflow in the CComVariant::ReadFromStream function in the Active Template Library (ATL) is reachable through the MPEG2TuneRequ…KEVEPSS 77%analysed7.7CVE-2025-20352Cisco IOS and IOS XE SNMP stack overflow allows DoS and root code executionA stack-based buffer overflow in the SNMP subsystem of Cisco IOS and IOS XE Software can be triggered by a crafted SNMP packet sent over IPv4 or IPv6…KEVEPSS 39%analysed

Source: NIST National Vulnerability Database (record CVE-2010-3872), CISA KEV, FIRST EPSS (scores of 2026-09-29). This page is refreshed as NVD updates the record.