CVE-2016-8740 | Apache HTTP Server up to 2.4.23 mod_http2 h2_stream.c input validation (EDB-40909 / Nessus ID 96037)
A vulnerability was found in Apache HTTP Server up to 2.4.23. It has been declared as problematic. This vulnerability affects unknown code of the file modules/http2/h2_stream.c of the component mod_http2. The manipulation leads to improper input validation.
This vulnerability was named CVE-2016-8740. The attack can be initiated remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.