VYPR
Unrated severityNVD Advisory· Published Jul 1, 2024· Updated Nov 3, 2025

Apache HTTP Server: Crash resulting in Denial of Service in mod_proxy via a malicious request

CVE-2024-38477

Description

null pointer dereference in mod_proxy in Apache HTTP Server 2.4.59 and earlier allows an attacker to crash the server via a malicious request. Users are recommended to upgrade to version 2.4.60, which fixes this issue.

Affected products

51

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

2

News mentions

0

No linked articles in our index yet.