CVE-2017-7659

Severity CVSS v4.0:
Pending analysis
Type:
CWE-476 NULL Pointer Dereference
Publication date:
26/07/2017
Last modified:
20/04/2025

Description

A maliciously constructed HTTP/2 request could cause mod_http2 in Apache HTTP Server 2.4.24, 2.4.25 to dereference a NULL pointer and crash the server process.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:apache:http_server:2.4.24:*:*:*:*:*:*:*
cpe:2.3:a:apache:http_server:2.4.25:*:*:*:*:*:*:*


References to Advisories, Solutions, and Tools