Back

CVE-2006-0042

Unspecified vulnerability in (1) apreq_parse_headers and (2) apreq_parse_urlencoded functions in Apache2::Request (Libapreq2) before 2.07 allows remote attackers to cause a denial of service (CPU consumption) via unknown attack vectors that result in quadratic computational complexity.

Published: Feb 18, 2006 Modified: Jun 16, 2026
NVD-CWE-noinfo

CVSS Metrics

Affected Products (3)

Vendor Product Version
apache libapreq2 * < 2.07
debian debian_linux 3.0
debian debian_linux 3.1

GitHub Security Advisory GHSA-67xr-x2j9-rc4g

Unspecified vulnerability in (1) apreq_parse_headers and (2) apreq_parse_urlencoded functions in...

Risk Scores

CVSS Score 5.0 / 10
EPSS Score 6.23%

Top 7% most likely to be exploited

Threat Score 21.9 / 100

Data Sources

NVD EPSS GitHub