ZeroHour

CVE-2018-8011

CVSS 3.0
7.5 high
EPSS
56%p99
Published
()
Modified
Description

By specially crafting HTTP requests, the mod_md challenge handler would dereference a NULL pointer and cause the child process to segfault. This could be used to DoS the server. Fixed in Apache HTTP Server 2.4.34 (Affected 2.4.33).

Vendors
apachenetapp
Products
http server, cloud backup
Weakness
CWE-476
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.