CVE-2020-13950

All FrameworksApache HTTPDCWE-OtherCVE-2020-13950

CVE-2020-13950

State: PUBLISHED · Published: 2021-06-10 · Updated: 2024-08-04 · Assigner: apache
Description
Apache HTTP Server versions 2.4.41 to 2.4.46 mod_proxy_http can be made to crash (NULL pointer dereference) with specially crafted requests using both Content-Length and Transfer-Encoding headers, leading to a Denial of Service
CWE
Affected
CVSS
References
Source
cvelistV5-main/cves/2020/13xxx/CVE-2020-13950.json