Описание
A buffer overflow in mod_proxy_html in Apache HTTP Server 2.4.67 and earlier allows an attack by an untrusted backend. Users are recommended to upgrade to version 2.4.68, which fixes this issue.
Пакеты
| Пакет | Статус | Версия исправления | Релиз | Тип |
|---|---|---|---|---|
| apache2 | fixed | 2.4.68-1 | package | |
| apache2 | fixed | 2.4.68-1~deb13u1 | trixie | package |
| apache2 | fixed | 2.4.68-1~deb12u1 | bookworm | package |
Примечания
https://httpd.apache.org/security/vulnerabilities_24.html#CVE-2026-34355
Fixed by: https://github.com/apache/httpd/commit/d62fc375281486c6036b007ac349b25d4e6edb4a (2.4.68-rc1-candidate)
EPSS
Связанные уязвимости
A buffer overflow in mod_proxy_html in Apache HTTP Server 2.4.67 and earlier allows an attack by an untrusted backend. Users are recommended to upgrade to version 2.4.68, which fixes this issue.
A buffer overflow in mod_proxy_html in Apache HTTP Server 2.4.67 and earlier allows an attack by an untrusted backend. Users are recommended to upgrade to version 2.4.68, which fixes this issue.
A buffer overflow in mod_proxy_html in Apache HTTP Server 2.4.67 and earlier allows an attack by an untrusted backend. Users are recommended to upgrade to version 2.4.68, which fixes this issue.
A buffer overflow in mod_proxy_html in Apache HTTP Server 2.4.67 and earlier allows an attack by an untrusted backend. Users are recommended to upgrade to version 2.4.68, which fixes this issue.
EPSS