Описание
A flaw in the libapreq2 v2.07 to v2.13 multipart parser can deference a null pointer leading to a process crash. A remote attacker could send a request causing a process crash which could lead to a denial of service attack.
Релиз | Статус | Примечание |
---|---|---|
bionic | released | 2.13-7~deb10u1build0.18.04.1 |
devel | not-affected | 2.13-7 |
disco | ignored | end of life |
eoan | ignored | end of life |
esm-apps/bionic | released | 2.13-7~deb10u1build0.18.04.1 |
esm-apps/focal | not-affected | 2.13-7 |
esm-apps/jammy | not-affected | 2.13-7 |
esm-apps/xenial | released | 2.13-4ubuntu2+esm1 |
esm-infra-legacy/trusty | not-affected | 2.13-3ubuntu2+esm1 |
focal | not-affected | 2.13-7 |
Показывать по
EPSS
5 Medium
CVSS2
7.5 High
CVSS3
Связанные уязвимости
A flaw in the libapreq2 v2.07 to v2.13 multipart parser can deference a null pointer leading to a process crash. A remote attacker could send a request causing a process crash which could lead to a denial of service attack.
A flaw in the libapreq2 v2.07 to v2.13 multipart parser can deference ...
A flaw in the libapreq2 v2.07 to v2.13 multipart parser can deference a null pointer leading to a process crash. A remote attacker could send a request causing a process crash which could lead to a denial of service attack.
Уязвимость функции create_multipart_context() библиотеки libapreq2, позволяющая нарушителю вызвать отказ в обслуживании
EPSS
5 Medium
CVSS2
7.5 High
CVSS3