Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Marc Stern

#47036of 53,632
5.4Total CVSS
Vulnerabilities · 1
PT-2024-4676
5.4
2024-05-27
Apache · Apache Http Server · CVE-2024-36387
Name of the Vulnerable Software and Affected Versions: Apache HTTP Server (affected versions not specified) Description: The issue is related to serving WebSocket protocol upgrades over a HTTP/2 connection, which could result in a Null Pointer dereference. This can lead to a crash of the server process and degrade performance. The vulnerability can be exploited by a remote attacker to cause a denial of service. Recommendations: At the moment, there is no information about a newer version that contains a fix for this vulnerability.