Anyone know how to fix this one ?
I can't seem to find a recent update for this bug in Centos8.
moderate: CVE-2019-10097 mod_remoteip: Stack buffer overflow and NULL pointer dereference (CVE-2019-10097)
When mod_remoteip was configured to use a trusted intermediary proxy server using the "PROXY" protocol, a specially crafted PROXY header could trigger a stack buffer overflow or NULL pointer deference. This vulnerability could only be triggered by a trusted proxy and not by untrusted HTTP clients.
Acknowledgements: The issue was discovered by Daniel McCarney <email@example.com
> Let's Encrypt / Internet Security Research Group (ISRG)
Reported to security team 23rd July 2019
Issue public 14th August 2019
Update Released 14th August 2019
Affects 2.4.38, 2.4.37, 2.4.35, 2.4.34, 2.4.33
[root@myserver ~]# httpd -v ; cat /etc/centos-release
Server version: Apache/2.4.37 (centos)
Server built: Nov 4 2020 03:20:37
CentOS Linux release 8.3.2011