CyberRota Analysis
AI-GeneratedA NULL pointer dereference vulnerability in the mod_xml2enc module of Apache HTTP Server prior to version 2.4.69 can be exploited by an untrusted backend server, leading to a denial of service through improperly handled proxied responses. Organizations using affected versions of Apache should prioritize upgrading to version 2.4.69 to mitigate this risk and ensure service availability.
Original NVD Description
A NULL pointer dereference in mod_xml2enc in Apache Software Foundation Apache HTTP Server before 2.4.69 on all platforms allows an untrusted backend server to cause a denial of service via a proxied response with a charset whose conversion partially succeeds then fails. Users are recommended to upgrade to version 2.4.69, which fixes this issue.
Related CVEs
Other vulnerabilities affecting the same vendor(s)