execution or denial of service via use-after-free in mod_ldap per-directory configuration (CVE-2026-29167)