CVE-2022-23943

Source
https://cve.org/CVERecord?id=CVE-2022-23943
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-23943.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2022-23943
Aliases
Downstream
Related
Published
2022-03-14T10:15:54Z
Modified
2026-05-15T11:54:14.867374711Z
Summary
mod_sed: Read/write beyond bounds
Details

Out-of-bounds Write vulnerability in mod_sed of Apache HTTP Server allows an attacker to overwrite heap memory with possibly attacker provided data. This issue affects Apache HTTP Server 2.4 version 2.4.52 and prior versions.

Database specific
{
    "cwe_ids": [
        "CWE-190",
        "CWE-787"
    ],
    "unresolved_ranges": [
        {
            "source": "AFFECTED_FIELD",
            "extracted_events": [
                {
                    "introduced": "2.4"
                },
                {
                    "last_affected": "2.4.52"
                }
            ]
        }
    ],
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/23xxx/CVE-2022-23943.json",
    "cna_assigner": "apache"
}
References

Affected packages