Описание
A flaw in the libapreq2 v2.07 to v2.13 multipart parser can deference a null pointer leading to a process crash. A remote attacker could send a request causing a process crash which could lead to a denial of service attack.
| Релиз | Статус | Примечание |
|---|---|---|
| bionic | released | 2.13-7~deb10u1build0.18.04.1 |
| devel | not-affected | 2.13-7 |
| disco | ignored | end of life |
| eoan | ignored | end of life |
| esm-apps/bionic | released | 2.13-7~deb10u1build0.18.04.1 |
| esm-apps/focal | not-affected | 2.13-7 |
| esm-apps/jammy | not-affected | 2.13-7 |
| esm-apps/xenial | released | 2.13-4ubuntu2+esm1 |
| esm-infra-legacy/trusty | released | 2.13-3ubuntu2+esm1 |
| focal | not-affected | 2.13-7 |
Показывать по
EPSS
5 Medium
CVSS2
7.5 High
CVSS3
Связанные уязвимости
A flaw in the libapreq2 v2.07 to v2.13 multipart parser can deference a null pointer leading to a process crash. A remote attacker could send a request causing a process crash which could lead to a denial of service attack.
A flaw in the libapreq2 v2.07 to v2.13 multipart parser can deference ...
A flaw in the libapreq2 v2.07 to v2.13 multipart parser can deference a null pointer leading to a process crash. A remote attacker could send a request causing a process crash which could lead to a denial of service attack.
Уязвимость функции create_multipart_context() библиотеки libapreq2, позволяющая нарушителю вызвать отказ в обслуживании
EPSS
5 Medium
CVSS2
7.5 High
CVSS3