Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2026-33857

Опубликовано: 04 мая 2026
Источник: debian
EPSS Низкий

Описание

Out-of-bounds Read vulnerability in mod_proxy_ajp of Apache HTTP Server. This issue affects Apache HTTP Server: through 2.4.66. Users are recommended to upgrade to version 2.4.67, which fixes the issue.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
apache2fixed2.4.67-1package

Примечания

  • https://www.openwall.com/lists/oss-security/2026/05/04/15

  • https://httpd.apache.org/security/vulnerabilities_24.html#CVE-2026-33857

  • https://github.com/apache/httpd/commit/493eb23e5cc18c3a7be53977c182ff5d1360c64c (2.4.67-rc1-candidate)

EPSS

Процентиль: 32%
0.00393
Низкий

Связанные уязвимости

CVSS3: 5.3
ubuntu
3 месяца назад

Out-of-bounds Read vulnerability in mod_proxy_ajp of Apache HTTP Server. This issue affects Apache HTTP Server: through 2.4.66. Users are recommended to upgrade to version 2.4.67, which fixes the issue.

CVSS3: 7.5
redhat
3 месяца назад

Out-of-bounds Read vulnerability in mod_proxy_ajp of Apache HTTP Server. This issue affects Apache HTTP Server: through 2.4.66. Users are recommended to upgrade to version 2.4.67, which fixes the issue.

CVSS3: 5.3
nvd
3 месяца назад

Out-of-bounds Read vulnerability in mod_proxy_ajp of Apache HTTP Server. This issue affects Apache HTTP Server: through 2.4.66. Users are recommended to upgrade to version 2.4.67, which fixes the issue.

CVSS3: 5.3
msrc
3 месяца назад

Apache HTTP Server: Off-by-one OOB reads in AJP getter functions

CVSS3: 5.3
github
3 месяца назад

Out-of-bounds Read vulnerability in mod_proxy_ajp of Apache HTTP Server. This issue affects Apache HTTP Server: through 2.4.66. Users are recommended to upgrade to version 2.4.67, which fixes the issue.

EPSS

Процентиль: 32%
0.00393
Низкий