Description
The cache_merge_headers_out function in modules/cache/cache_util.c in the mod_cache module in the Apache HTTP Server before 2.4.11 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via an empty HTTP Content-Type header.
Remediation
References
Related Vulnerabilities
MediaWiki Permissions, Privileges, and Access Controls Vulnerability (CVE-2010-1190)
Oracle Database Server CVE-2010-0892 Vulnerability (CVE-2010-0892)
WordPress Plugin WooCommerce Weight Based Shipping Cross-Site Request Forgery (5.4.1)
WordPress Plugin WP Photo Album 'photo' Parameter SQL Injection (1.0)