HTTP: Apache httpd mod proxy NULL Pointer Dereference

This signature detects attempts to exploit a known vulnerability against Apache httpd mod proxy. A successful attack can result in a denial-of-service condition.

Extended Description

A crafted URI sent to httpd configured as a forward proxy (ProxyRequests on) can cause a crash (NULL pointer dereference) or, for configurations mixing forward and reverse proxy declarations, can allow for requests to be directed to a declared Unix Domain Socket endpoint (Server Side Request Forgery). This issue affects Apache HTTP Server 2.4.7 up to 2.4.51 (included).

Affected Products

Apple mac_os_x

Short Name
HTTP:DOS:APCHE-HTTPD-MDPRXY-DOS
Severity
Minor
Recommended
True
Recommended Action
Drop
Category
HTTP
Keywords
Apache CVE-2021-44224 Dereference NULL Pointer httpd mod proxy
Release Date
01/20/2022
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3793
False Positive
Unknown
Vendors

Apple

Fedoraproject

Oracle

Apache

Debian

Tenable

CVSS Score

6.4

Found a potential security threat?