CVE-2017-3169

In Apache httpd 2.2.x before 2.2.33 and 2.4.x before 2.4.26, mod_ssl may dereference a NULL pointer when third-party modules call ap_hook_process_connection() during an HTTP request to an HTTPS port.


We have discovered 704,949 live websites that are affected by CVE-2017-3169.

Run a Free Instant Scan




Affected Software

Product  Apache
Category Web Servers
Vulnerable Domains704,949 live websites (28% of Apache install base)
Vulnerable Versions
  • from 2.2 through 2.2.33
  • from 2.4 through 2.4.26
Vulnerable Versions Count52 versions ( 43% of all versions)


Common Weakness Enumeration

CWE-476 NULL Pointer Dereference



Details

  • Published - Jun 20, 2017
  • Updated - Aug 5, 2024

Website Distribution by Country

Number of websites using CVE-2017-3169
United States160,903 websites



Taiwan107,906 websites
Germany68,018 websites
France33,330 websites
Russia32,844 websites
Japan32,213 websites
Netherlands26,389 websites
Czech Republic20,619 websites
Italy18,628 websites
Singapore18,614 websites

Website Distribution by TLD

Number of websites using CVE-2017-3169
.com305,453 websites
.de48,929 websites
.ru28,293 websites
.net26,269 websites
.org24,547 websites
.nl19,654 websites
.cz16,634 websites
.it15,552 websites
.info12,409 websites
.fr10,559 websites

Vulnerable Versions

Vulnerable versions are highlighted in red

Websites affected by CVE-2017-3169

Top websites that are affected by CVE-2017-3169. Please click on the "Contact us" link to get more information.
DomainCountryRankContacts
*****.***********.com Canada***
***.****.us United States*,***
******************.com United States*,***
*********.******.net United States*,***
****.com United States*,***
********.com United States*,***
****.**.pl Poland*,***
********.in India*,***
******.com Japan*,***
******.de Germany*,***
See full domain list

FAQ

CVE-2017-3169 is NULL Pointer Dereference in Apache
A total of 704,949 websites have been identified as vulnerable to CVE-2017-3169, based on global website indexing conducted by WebTechSurvey.
The Apache is affected by the CVE-2017-3169 vulnerability.
Apache versions up to 2.4.26 are vulnerable to CVE-2017-3169.
CVE-2017-3169 is resolved in version 2.4.26 of Apache.

References