Lighttpd 1.4.56 through 1.4.58 allows a remote attacker to cause a denial of service (CPU consumption from stuck connections) because connection_read_header_more in connections.c has a typo that disrupts use of multiple read operations on large headers.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2022-06-11T14:40:53
Updated: 2024-08-03T06:56:14.103Z
Reserved: 2022-05-16T00:00:00
Link: CVE-2022-30780
Vulnrichment
No data.
NVD
Status : Modified
Published: 2022-06-11T15:15:08.807
Modified: 2024-11-21T07:03:21.907
Link: CVE-2022-30780
Redhat
No data.