A flaw in Apache libapreq2 versions 2.16 and earlier could cause a buffer overflow while processing multipart form uploads. A remote attacker could send a request causing a process crash which could lead to a denial of service attack. https://lists.apache.org/thread/2fsjoor96d47vtkpf76x4yo06nccvy1y http://www.openwall.com/lists/oss-security/2022/08/25/4 http://www.openwall.com/lists/oss-security/2022/08/25/3 http://www.openwall.com/lists/oss-security/2022/08/26/4
Created libapreq2 tracking bugs for this issue: Affects: epel-all [bug 2123769] Affects: fedora-all [bug 2123770]
This CVE Bugzilla entry is for community support informational purposes only as it does not affect a package in a commercially supported Red Hat product. Refer to the dependent bugs for status of those individual community products.