VYPR
Unrated severityNVD Advisory· Published Dec 5, 2024· Updated Dec 6, 2024

OpenBSD httpd(8) null dereference

CVE-2024-11148

Description

In OpenBSD 7.4 before errata 006 and OpenBSD 7.3 before errata 020, httpd(8) is vulnerable to a NULL dereference when handling a malformed fastcgi request.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • Apache/Httpdllm-fuzzy
    Range: 7.4 < errata 006, 7.3 < errata 020
  • OpenBSD/OpenBSDllm-fuzzy2 versions
    7.4 < errata 006, 7.3 < errata 020+ 1 more
    • (no CPE)range: 7.4 < errata 006, 7.3 < errata 020
    • (no CPE)range: 7.4

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.