CVE-2021-34798. NULL pointer dereference in httpd core.

Brocade Fabric OS

2 more products

21248

13 September 2022

13 September 2022

Closed

High

Base Score: 7.5 - HIGH - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

N/A

CVE-2021-34798

Summary

Security Advisory ID : BSA-2022-1597

Component : Apache httpd

Revision : 1.0

Malformed requests may cause the server to dereference a NULL pointer. This issue affects Apache HTTP Server 2.4.48 and earlier.

Affected Products

  • All versions of Brocade Fabric OS

Products Confirmed Not Vulnerable

No other Brocade Fibre Channel Products from Broadcom products are known to be affected by this vulnerability.

Solution

Security update provided in Brocade Fabric OS: v9.1.1, v9.0.1e, v8.2.3c, v8.2.0_cbn5, 7.4.2j

Revision History

Version

Change

Date

1.0

Initial Publication

Sept 13, 2022