CVE-2022-30522

Updated: 2025-08-20 00:03:43.87105

Description:

If Apache HTTP Server 2.4.53 is configured to do transformations with mod_sed in contexts where the input to mod_sed may be very large, mod_sed may make excessively large memory allocations and trigger an abort.


Links NIST CIRCL RHEL Ubuntu

Severity

Severity Score
CVSS Version 2.x MEDIUM 5.0
CVSS Version 3.x HIGH 7.5

Status

OS name Project name Version Score Severity Status Errata Last updated

Statement

AlmaLinux 9.2 ESU httpd 2.4.53 7.5 HIGH Already Fixed 2023-11-08 08:36:00
CentOS 6 ELS httpd 2.2.15 7.5 HIGH Not Vulnerable 2022-06-17 11:37:05
CentOS 7 ELS httpd 2.4.6 7.5 HIGH Released CLSA-2025:1739823342 2025-02-28 21:59:31
CentOS 8.4 ELS httpd 2.4.37 7.5 HIGH Released CLSA-2022:1656429967 2022-06-28 11:50:05
CentOS 8.5 ELS httpd 2.4.37 7.5 HIGH Released CLSA-2022:1656430448 2022-06-28 11:50:04
CloudLinux 6 ELS httpd 2.2.15 7.5 HIGH Not Vulnerable 2022-06-17 11:37:05
CloudLinux 7 ELS httpd 2.4.6 7.5 HIGH Released CLSA-2025:1739828010 2025-03-12 23:15:16
Oracle Linux 6 ELS httpd 2.2.15 7.5 HIGH Not Vulnerable 2022-06-17 11:37:04
Oracle Linux 7 ELS httpd 2.4.6 7.5 HIGH Released CLSA-2025:1741635876 2025-03-10 22:59:12
Ubuntu 16.04 ELS apache2 2.4.18 7.5 HIGH Released CLSA-2022:1656430949 2022-06-28 11:50:05