Apache – CVE-2022-29404


Kayran has detected that the version of Apache HTTP Server being used is vulnerable to denial of service (DoS). Also known as CVE-2022-29404.

By sending a malicious request to a lua script that calls r:parsebody(0), a denial of service is possible.
That happens due to no default limit on the possible input size.


To fix CVE-2022-29404, upgrade the version of Apache Server being used to 2.4.54.



