Описание
Serving WebSocket protocol upgrades over a HTTP/2 connection could result in a Null Pointer dereference, leading to a crash of the server process, degrading performance.
Пакеты
Пакет | Статус | Версия исправления | Релиз | Тип |
---|---|---|---|---|
apache2 | fixed | 2.4.60-1 | package |
Примечания
https://httpd.apache.org/security/vulnerabilities_24.html#CVE-2024-36387
https://github.com/apache/httpd/commit/62aa64e5aea21dd969db97aded4443c98c0735ac
(see also https://svn.apache.org/viewvc?view=revision&revision=1918557)
EPSS
Связанные уязвимости
Serving WebSocket protocol upgrades over a HTTP/2 connection could result in a Null Pointer dereference, leading to a crash of the server process, degrading performance.
Serving WebSocket protocol upgrades over a HTTP/2 connection could result in a Null Pointer dereference, leading to a crash of the server process, degrading performance.
Serving WebSocket protocol upgrades over a HTTP/2 connection could result in a Null Pointer dereference, leading to a crash of the server process, degrading performance.
EPSS