VDB
BDU%3A2022-06126
BDU%3A2022-06126
PUBLISHED
CVSS 7.800000190734863 HIGH
Уязвимость модуля mod_wstunnel веб-сервера lighttpd, позволяющая нарушителю вызвать отказ в обслуживании
Risk Scores
CVSS 2.0
7.800000190734863
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Сообщество свободного программного обеспечения, Novell Inc., ООО «Ред Софт», Jan Kneschke | Debian GNU/Linux, openSUSE Tumbleweed, OpenSUSE Leap, SUSE Package Hub for SUSE Linux Enterprise, РЕД ОС (запись в едином реестре российских программ №3751), Lighttpd |
Timeline
- Oct 6, 2022 CVE Published
- Sep 13, 2024 CVE Updated
- Mar 19, 2026 Distribution Patch
- Mar 19, 2026 Security Advisory
References
- https://nvd.nist.gov/vuln/detail/CVE-2022-37797 url
- https://lists.debian.org/debian-lts-announce/2022/10/msg00002.html url
- https://redmine.lighttpd.net/issues/3165 advisory
- https://redos.red-soft.ru/support/secure/uyazvimosti/uyazvimost-lighttpd-cve-2022-37797/ advisory
- https://www.debian.org/security/2022/dsa-5243 advisory
- https://security-tracker.debian.org/tracker/CVE-2022-37797 advisory
- https://www.suse.com/security/cve/CVE-2022-37797.html advisory