CVE-2023-28625 | mod_auth_openidc up to 2.4.13.1 Cookie OIDCStripCookies null pointer dereference (GHSA-f5xw-rvfr-24qr / WID-SEC-2023-2853)
A vulnerability, which was classified as problematic, was found in mod_auth_openidc up to 2.4.13.1. This issue affects some unknown processing of the component Cookie Handler. Executing manipulation of the argument OIDCStripCookies can lead to null pointer dereference.
This vulnerability is registered as CVE-2023-28625. It is possible to launch the attack remotely. No exploit is available.
You should upgrade the affected component.