A vulnerability classified as critical has been found in Apache HTTP Server up to 2.4.67. This vulnerability affects the function ap_regname. Performing a manipulation results in heap-based buffer overflow.

This vulnerability is reported as CVE-2026-44631. The attack requires a local approach. No exploit exists.

It is recommended to upgrade the affected component.