VulnerabilityModified
CVE-2022-37797
It leads to null pointer dereference which crashes the server.
HIGH 7.5EPSS 2.53%
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (2.53%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
In lighttpd 1.4.65, mod_wstunnel does not initialize a handler function pointer if an invalid HTTP request (websocket handshake) is received. It leads to null pointer dereference which crashes the server. It could be used by an external attacker to cause denial of service condition.
- CVSS 3.1
- 7.5 HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
- EPSS
- 2.53% probability · 84th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-476
- Affected
- lighttpd/lighttpd · debian/debian linux
- Source
- cve@mitre.org
References
- https://lists.debian.org/debian-lts-announce/2022/10/msg00002.htmlMailing List, Third Party Advisory
- https://redmine.lighttpd.net/issues/3165Exploit, Issue Tracking, Third Party Advisory
- https://security.gentoo.org/glsa/202210-12Third Party Advisory
- https://www.debian.org/security/2022/dsa-5243Mailing List, Third Party Advisory
- https://lists.debian.org/debian-lts-announce/2022/10/msg00002.htmlMailing List, Third Party Advisory
- https://redmine.lighttpd.net/issues/3165Exploit, Issue Tracking, Third Party Advisory
- https://security.gentoo.org/glsa/202210-12Third Party Advisory
- https://www.debian.org/security/2022/dsa-5243Mailing List, Third Party Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.