NULL pointer dereference in lighttpd - CVE-2022-37797

 

NULL pointer dereference in lighttpd - CVE-2022-37797

Published: September 29, 2022


Vulnerability identifier: #VU67731
CSH Severity: Medium
CVSS v4: 6.9 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:A/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2022-37797
CWE-ID: CWE-476
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.

The vulnerability exists due to a NULL pointer dereference error within the mod_wstunnel module when handling invalid HTTP requests. A remote attacker can send specially crafted HTTP requests to the affected web server and perform a denial of service (DoS) attack.


Affected software

lighttpd
Debian Linux
Gentoo Linux
Amazon Linux AMI
Oracle Solaris
openEuler
lighttpd
lighttpd (Debian package)
www-servers/lighttpd
lighttpd-fastcgi
lighttpd-mod_mysql_vhost
lighttpd-debuginfo
lighttpd-mod_authn_gssapi
lighttpd-debugsource
lighttpd-mod_authn_pam
lighttpd-mod_authn_mysql
lighttpd-filesystem

How to mitigate CVE-2022-37797

Install update from vendor's website.

lighttpd - update to 1.4.67
lighttpd - update to 1.4.53-1.37
lighttpd (Debian package) - update to 1.4.59-1+deb11u2
www-servers/lighttpd - update to 1.4.67
lighttpd - update to 1.4.67-1
lighttpd-fastcgi - update to 1.4.67-1
lighttpd-mod_mysql_vhost - update to 1.4.67-1
lighttpd-debuginfo - update to 1.4.67-1
lighttpd-mod_authn_gssapi - update to 1.4.67-1
lighttpd-debugsource - update to 1.4.67-1
lighttpd-mod_authn_pam - update to 1.4.67-1
lighttpd-mod_authn_mysql - update to 1.4.67-1
lighttpd-filesystem - update to 1.4.67-1

External References

Related Security Bulletins