VYPR
High severity7.5NVD Advisory· Published Nov 19, 2020· Updated Jun 17, 2026

CVE-2019-12412

CVE-2019-12412

Description

A flaw in the libapreq2 v2.07 to v2.13 multipart parser can deference a null pointer leading to a process crash. A remote attacker could send a request causing a process crash which could lead to a denial of service attack.

Affected products

3
  • Apache/Libapreq22 versions
    cpe:2.3:a:apache:libapreq2:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:apache:libapreq2:*:*:*:*:*:*:*:*range: >=2.07,<=2.13
    • (no CPE)range: 2.07 - 2.13
  • libapreq2/libapreq2description

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.