#VU10953 Improper input validation in Apache HTTP Server - CVE-2016-8612
Published: March 12, 2018 / Updated: March 13, 2018
Apache HTTP Server
Apache Foundation
Description
The vulnerability allows an adjacent unauthenticated attacker to cause DoS condition on the target system.
The weakness exists in the mod_cluster module due to improper input validation by the protocol parsing logic in the mod_cluster module. An adjacent attacker can send a specially crafted request, trigger a segmentation fault in the serving httpdprocess and cause the service to crash.