Описание
Serving WebSocket protocol upgrades over a HTTP/2 connection could result in a Null Pointer dereference, leading to a crash of the server process, degrading performance.
Ссылки
- Vendor Advisory
- Third Party Advisory
- Mailing ListThird Party Advisory
- Vendor Advisory
- Third Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия от 2.4.55 (включая) до 2.4.59 (включая)
cpe:2.3:a:apache:http_server:*:*:*:*:*:*:*:*
Конфигурация 2
cpe:2.3:a:netapp:ontap:9:*:*:*:*:*:*:*
EPSS
Процентиль: 78%
0.01226
Низкий
5.4 Medium
CVSS3
Дефекты
CWE-476
Связанные уязвимости
CVSS3: 5.4
ubuntu
около 1 года назад
Serving WebSocket protocol upgrades over a HTTP/2 connection could result in a Null Pointer dereference, leading to a crash of the server process, degrading performance.
CVSS3: 3.7
redhat
около 1 года назад
Serving WebSocket protocol upgrades over a HTTP/2 connection could result in a Null Pointer dereference, leading to a crash of the server process, degrading performance.
CVSS3: 5.4
debian
около 1 года назад
Serving WebSocket protocol upgrades over a HTTP/2 connection could res ...
EPSS
Процентиль: 78%
0.01226
Низкий
5.4 Medium
CVSS3
Дефекты
CWE-476