Is Identity Management and Governance (IGA) vulnerable to CVE-2021-44224?
search cancel

Is Identity Management and Governance (IGA) vulnerable to CVE-2021-44224?

book

Article ID: 231214

calendar_today

Updated On:

Products

CA Identity Suite

Issue/Introduction

CVE-2021-44224: Possible NULL dereference or SSRF in forwarding proxy configurations in Apache HTTP Server 2.4.51 and earlier.

Environment

Vapp 14.3,14.4

Cause

CVE-2021-44224

Resolution

The CVE-2021-44224 is not vulnerable, as the VApp proxy uses a reverse proxy configuration.

This is fixed in Virtual Appliance 14.4.2.

Additional Information

Reference Defect DE524026