Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2026-34355

Опубликовано: 08 июн. 2026
Источник: debian
EPSS Низкий

Описание

A buffer overflow in mod_proxy_html in Apache HTTP Server 2.4.67 and earlier allows an attack by an untrusted backend. Users are recommended to upgrade to version 2.4.68, which fixes this issue.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
apache2fixed2.4.68-1package
apache2fixed2.4.68-1~deb13u1trixiepackage
apache2fixed2.4.68-1~deb12u1bookwormpackage

Примечания

  • https://httpd.apache.org/security/vulnerabilities_24.html#CVE-2026-34355

  • Fixed by: https://github.com/apache/httpd/commit/d62fc375281486c6036b007ac349b25d4e6edb4a (2.4.68-rc1-candidate)

EPSS

Процентиль: 62%
0.01089
Низкий

Связанные уязвимости

CVSS3: 7.5
ubuntu
около 2 месяцев назад

A buffer overflow in mod_proxy_html in Apache HTTP Server 2.4.67 and earlier allows an attack by an untrusted backend. Users are recommended to upgrade to version 2.4.68, which fixes this issue.

CVSS3: 7.5
redhat
около 2 месяцев назад

A buffer overflow in mod_proxy_html in Apache HTTP Server 2.4.67 and earlier allows an attack by an untrusted backend. Users are recommended to upgrade to version 2.4.68, which fixes this issue.

CVSS3: 7.5
nvd
около 2 месяцев назад

A buffer overflow in mod_proxy_html in Apache HTTP Server 2.4.67 and earlier allows an attack by an untrusted backend. Users are recommended to upgrade to version 2.4.68, which fixes this issue.

msrc
около 2 месяцев назад

Apache HTTP Server: mod_proxy_html buffer overflow

CVSS3: 7.5
github
около 2 месяцев назад

A buffer overflow in mod_proxy_html in Apache HTTP Server 2.4.67 and earlier allows an attack by an untrusted backend. Users are recommended to upgrade to version 2.4.68, which fixes this issue.

EPSS

Процентиль: 62%
0.01089
Низкий