CVE-2022-30592: Null Pointer Dereference
Published May 11, 2022
·Updated
liblsquic/lsquicqenchdl.c in LiteSpeed QUIC (aka LSQUIC) before 3.1.0 mishandles MAXTABLECAPACITY.
Affected Software
1 affected component
Litespeedtech Lsquic<3.1.0
Remediation
Event History
May 11, 2022
CVE Published
via MITRE·10:12 PM
Data Sourced
via MITRE·10:12 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2022-30592?
CVE-2022-30592 is classified as a high severity vulnerability.
2
How do I fix CVE-2022-30592?
To fix CVE-2022-30592, you should upgrade to LiteSpeed QUIC version 3.1.0 or later.
3
What does CVE-2022-30592 affect?
CVE-2022-30592 affects the LiteSpeed QUIC (LSQUIC) implementation prior to version 3.1.0.
4
What is the impact of CVE-2022-30592?
The impact of CVE-2022-30592 involves mishandling of MAX_TABLE_CAPACITY, which can lead to resource exhaustion.
5
Are there any workarounds for CVE-2022-30592?
There are no specific workarounds for CVE-2022-30592; the recommended action is to upgrade the software.