FlawAtlas
Search the atlas
CVE-2026-33007 Moderate

Apache HTTP Server: mod_authn_socache crash

A NULL pointer dereference in the mod_authn_socache in Apache HTTP Server 2.4.66 and earlier allows an unauthenticated remote user to crash a child process in a caching forward proxy configuration. Users are recommended to upgrade to version 2.4.67, which fixes this issue.

Exploit probability 0.5%
Published May 5, 2026
Required by Not available
Last source change May 5, 2026

02 / AFFECTED SOFTWARE

Affected packages

Bitnami apache

04 / EVIDENCE

Source records

Open Source Vulnerabilities BIT-apache-2026-33007

A NULL pointer dereference in the mod_authn_socache in Apache HTTP Server 2.4.66 and earlier allows an unauthenticated remote user to crash a child process in a caching forward proxy configuration. Users are recommended to upgrade to version 2.4.67, which fixes this issue.

View original source

05 / REFERENCES

Further evidence