A maliciously constructed HTTP/2 request could cause mod_http2 in Apache HTTP Server 2.4.24, 2.4.25 to dereference a NULL pointer and crash the server process.
https://www.tenable.com/security/tns-2019-09
https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbux03908en_us
https://support.apple.com/HT208221
https://security.netapp.com/advisory/ntap-20180601-0002/
https://security.gentoo.org/glsa/201710-32
https://access.redhat.com/errata/RHSA-2017:2483
http://www.securitytracker.com/id/1038711