A flaw in the libapreq2 v2.07 to v2.13 multipart parser can deference a null pointer leading to a process crash. A remote attacker could send a request causing a process crash which could lead to a denial of service attack.
A NULL pointer dereference occurs when the application dereferences a pointer that it expects to be valid, but is NULL, typically causing a crash or exit.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Libapreq2 | Apache | 2.07 (including) | 2.13 (including) |
Libapreq2 | Ubuntu | bionic | * |
Libapreq2 | Ubuntu | disco | * |
Libapreq2 | Ubuntu | eoan | * |
Libapreq2 | Ubuntu | esm-apps/xenial | * |
Libapreq2 | Ubuntu | trusty | * |
Libapreq2 | Ubuntu | trusty/esm | * |
Libapreq2 | Ubuntu | upstream | * |
Libapreq2 | Ubuntu | xenial | * |