Vulnerabilities > Apache > Libapreq2

DATE CVE VULNERABILITY TITLE RISK
2022-08-25 CVE-2022-22728 Classic Buffer Overflow vulnerability in multiple products
A flaw in Apache libapreq2 versions 2.16 and earlier could cause a buffer overflow while processing multipart form uploads.
network
low complexity
apache fedoraproject debian CWE-120
7.5
2020-11-19 CVE-2019-12412 NULL Pointer Dereference vulnerability in Apache Libapreq2
A flaw in the libapreq2 v2.07 to v2.13 multipart parser can deference a null pointer leading to a process crash.
network
low complexity
apache CWE-476
5.0
2006-02-18 CVE-2006-0042 Denial of Service vulnerability in Apache Libapreq2 Quadratic Behavior
Unspecified vulnerability in (1) apreq_parse_headers and (2) apreq_parse_urlencoded functions in Apache2::Request (Libapreq2) before 2.07 allows remote attackers to cause a denial of service (CPU consumption) via unknown attack vectors that result in quadratic computational complexity.
network
low complexity
apache debian
5.0