Description
Apache HTTP Server versions 2.4.41 to 2.4.46 mod_proxy_http can be made to crash (NULL pointer dereference) with specially crafted requests using both Content-Length and Transfer-Encoding headers, leading to a Denial of Service
Remediation
References
Related Vulnerabilities
OpenSSL Other Vulnerability (CVE-2014-3510)
WordPress Plugin Checklist Cross-Site Scripting (1.1.5)
Play Framework Data Amplification Vulnerability (CVE-2020-28923)
Drupal Core 5.x Security Bypass (5.0 - 5.2)
PostgreSQL Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2013-1899)