A libapreq2 security update has been released for Debian GNU/Linux 9 Extended LTS to address a flaw that caused a buffer overflow while processing multipart form uploads.
ELA-769-1 libapreq2 security update
Package : libapreq2
ELA-769-1 libapreq2 security update
Version : 2.13-7~deb9u2 (stretch)
Related CVEs :
CVE-2022-22728
A flaw in Apache libapreq2 versions 2.16 and earlier could cause a buffer overflow while processing multipart form uploads. A remote attacker could send a request causing a process crash which could lead to a denial of service attack.