CVE-2022-30522

HIGH7.5EPSS 10.2%

mod_sed denial of service

Published: 6/9/2022Modified: 5/20/2025
Also known as:ALPINE-CVE-2022-30522BIT-apache-2022-30522

Description

If Apache HTTP Server 2.4.53 is configured to do transformations with mod_sed in contexts where the input to mod_sed may be very large, mod_sed may make excessively large memory allocations and trigger an abort.

Affected packages (3)

CVSS scores

SourceVersionSeverityVector
osvCVSS 3.1HIGH7.5CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

References (9)