Description
While fuzzing the 2.4.49 httpd, a new null pointer dereference was detected during HTTP/2 request processing, allowing an external source to DoS the server. This requires a specially crafted request. The vulnerability was recently introduced in version 2.4.49. No exploit is known to the project.
Remediation
References
Related Vulnerabilities
OpenSSL Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2015-3195)
NuSOAP Improper Certificate Validation Vulnerability (CVE-2012-6071)
MySQL CVE-2023-22008 Vulnerability (CVE-2023-22008)
WordPress Plugin WP Publication Archive 'file' Parameter Directory Traversal (2.3)