Количество 7
Количество 7
GHSA-cm5p-p299-9f4g
In lighttpd 1.4.65, mod_wstunnel does not initialize a handler function pointer if an invalid HTTP request (websocket handshake) is received. It leads to null pointer dereference which crashes the server. It could be used by an external attacker to cause denial of service condition.

CVE-2022-37797
In lighttpd 1.4.65, mod_wstunnel does not initialize a handler function pointer if an invalid HTTP request (websocket handshake) is received. It leads to null pointer dereference which crashes the server. It could be used by an external attacker to cause denial of service condition.

CVE-2022-37797
In lighttpd 1.4.65, mod_wstunnel does not initialize a handler function pointer if an invalid HTTP request (websocket handshake) is received. It leads to null pointer dereference which crashes the server. It could be used by an external attacker to cause denial of service condition.
CVE-2022-37797
In lighttpd 1.4.65, mod_wstunnel does not initialize a handler functio ...

openSUSE-SU-2022:10132-1
Security update for lighttpd

ROS-20221004-02
Уязвимость lighttpd

BDU:2022-06126
Уязвимость модуля mod_wstunnel веб-сервера lighttpd, позволяющая нарушителю вызвать отказ в обслуживании
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
---|---|---|---|---|
GHSA-cm5p-p299-9f4g In lighttpd 1.4.65, mod_wstunnel does not initialize a handler function pointer if an invalid HTTP request (websocket handshake) is received. It leads to null pointer dereference which crashes the server. It could be used by an external attacker to cause denial of service condition. | CVSS3: 7.5 | 0% Низкий | почти 3 года назад | |
![]() | CVE-2022-37797 In lighttpd 1.4.65, mod_wstunnel does not initialize a handler function pointer if an invalid HTTP request (websocket handshake) is received. It leads to null pointer dereference which crashes the server. It could be used by an external attacker to cause denial of service condition. | CVSS3: 7.5 | 0% Низкий | почти 3 года назад |
![]() | CVE-2022-37797 In lighttpd 1.4.65, mod_wstunnel does not initialize a handler function pointer if an invalid HTTP request (websocket handshake) is received. It leads to null pointer dereference which crashes the server. It could be used by an external attacker to cause denial of service condition. | CVSS3: 7.5 | 0% Низкий | почти 3 года назад |
CVE-2022-37797 In lighttpd 1.4.65, mod_wstunnel does not initialize a handler functio ... | CVSS3: 7.5 | 0% Низкий | почти 3 года назад | |
![]() | openSUSE-SU-2022:10132-1 Security update for lighttpd | 0% Низкий | больше 2 лет назад | |
![]() | ROS-20221004-02 Уязвимость lighttpd | 0% Низкий | больше 2 лет назад | |
![]() | BDU:2022-06126 Уязвимость модуля mod_wstunnel веб-сервера lighttpd, позволяющая нарушителю вызвать отказ в обслуживании | CVSS3: 7.5 | 0% Низкий | почти 3 года назад |
Уязвимостей на страницу