Back to search
CVE-2021-44790
Published: Dec 20, 2021
Modified: Aug 4, 2024
PUBLISHED
Description
A carefully crafted request body can cause a buffer overflow in the mod_lua multipart parser (r:parsebody() called from Lua scripts). The Apache httpd team is not aware of an exploit for the vulnerabilty though it might be possible to craft one. This issue affects Apache HTTP Server 2.4.51 and earlier.
| Vendor | Product | Versions |
|---|---|---|
Apache Software Foundation | Apache HTTP Server | affected Apache HTTP Server 2.4 - <= 2.4.51 |
Weaknesses (CWE)
References
FEDORA-2021-29a536c2ae
vendor-advisory
DSA-5035
vendor-advisory
FEDORA-2022-b4103753e9
vendor-advisory
FEDORA-2022-21264ec6db
vendor-advisory
FEDORA-2022-78e3211c55
vendor-advisory
GLSA-202208-20
vendor-advisory
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now