Description
A carefully crafted If: request header can cause a memory read, or write of a single zero byte, in a pool (heap) memory location beyond the header value sent. This could cause the process to crash. This issue affects Apache HTTP Server 2.4.54 and earlier.
Remediation
References
Related Vulnerabilities
WebLogic CVE-2023-22108 Vulnerability (CVE-2023-22108)
Squid Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2019-18677)
WordPress Plugin User Control SQL Injection (2.1.0)
IBM RTC Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2017-1509)
WordPress Plugin WBW Currency Switcher for WooCommerce Cross-Site Scripting (1.6.5)