Description
A flaw in Apache libapreq2 versions 2.16 and earlier could cause a buffer overflow while processing multipart form uploads. A remote attacker could send a request causing a process crash which could lead to a denial of service attack.
Published: 2022-08-25
Score: 7.5 High
EPSS: 19.9% Moderate
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Analysis and contextual insights are available on OpenCVE Cloud.

Remediation

No vendor fix or workaround currently provided.

Additional remediation guidance may be available on OpenCVE Cloud.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
Debian DLA Debian DLA DLA-3269-1 libapreq2 security update
EUVD EUVD EUVD-2022-27871 A flaw in Apache libapreq2 versions 2.16 and earlier could cause a buffer overflow while processing multipart form uploads. A remote attacker could send a request causing a process crash which could lead to a denial of service attack.
History

No history.

Subscriptions

Apache Libapreq2
Debian Debian Linux
Fedoraproject Fedora
cve-icon MITRE

Status: PUBLISHED

Assigner: apache

Published:

Updated: 2024-08-03T03:21:49.039Z

Reserved: 2022-01-06T00:00:00.000Z

Link: CVE-2022-22728

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2022-08-25T15:15:08.523

Modified: 2024-11-21T06:47:20.120

Link: CVE-2022-22728

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses