UBUNTU-CVE-2021-26690
Dashboard / Vulnerabilities / UBUNTU-CVE-2021-26690
UBUNTU-CVE-2021-26690
Summary:
Details: Apache HTTP Server versions 2.4.0 to 2.4.46 A specially crafted Cookie header handled by mod_session can cause a NULL pointer dereference and crash, leading to a possible Denial Of Service
References: https://ubuntu.com/security/CVE-2021-26690, https://httpd.apache.org/security/vulnerabilities_24.html#CVE-2021-26690, https://lists.apache.org/thread.html/rae406c1d19c0dfd3103c96923dadac2af1cd0bad6905ab1ede153865@%3Cannounce.httpd.apache.org%3E, http://www.openwall.com/lists/oss-security/2021/06/10/6, https://ubuntu.com/security/notices/USN-4994-1, https://ubuntu.com/security/notices/USN-4994-2, https://www.cve.org/CVERecord?id=CVE-2021-26690
Affected packages
Package
Name: apache2
Purl: pkg:deb/ubuntu/[email protected]+esm1?arch=source&distro=trusty/esm
Affected ranges
Type: ECOSYSTEM
Events:
