Your submission was sent successfully! Close

CVE-2022-30522

Published: 9 June 2022

If Apache HTTP Server 2.4.53 is configured to do transformations with mod_sed in contexts where the input to mod_sed may be very large, mod_sed may make excessively large memory allocations and trigger an abort.

Priority

Medium

CVSS 3 base score: 7.5

Status

Package Release Status
apache2
Launchpad, Ubuntu, Debian
bionic
Released (2.4.29-1ubuntu4.25)
focal
Released (2.4.41-4ubuntu3.12)
impish
Released (2.4.48-3.1ubuntu3.5)
jammy
Released (2.4.52-1ubuntu4.1)
trusty
Released (2.4.7-1ubuntu4.22+esm8)
upstream
Released (2.4.54-1)
xenial
Released (2.4.18-2ubuntu3.17+esm7)
Patches:
upstream: https://github.com/apache/httpd/commit/db47781128e42bd49f55076665b3f6ca4e2bc5e2