CVE-2024-36387 | Apache HTTP Server up to 2.4.59 Websocket over HTTP/2 null pointer dereference (Nessus ID 209927 / WID-SEC-2024-1504)
A vulnerability categorized as problematic has been discovered in Apache HTTP Server up to 2.4.59. The impacted element is an unknown function of the component Websocket over HTTP2 Handler. Such manipulation leads to null pointer dereference.
This vulnerability is listed as CVE-2024-36387. The attack may be performed from remote. There is no available exploit.
It is advisable to upgrade the affected component.