Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:37510
HistoryOct 11, 2022 - 1:39 p.m.

Denial Of Service (DoS)

2022-10-1113:39:08
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
13
lighttpd
denial of service
gw_backend.c
resource leak
connection slot exhaustion
anomalous tcp behavior
application crash
vulnerability

EPSS

0.002

Percentile

62.2%

lighttpd is vulnerable to denial of service. The vulnerability exists in gw_backend.c where there is a resource leak which will lead to a connection slot exhaustion after a large amount of anomalous TCP behavior causing an application crash.