Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2021-9541

Опубликовано: 04 нояб. 2021
Источник: oracle-oval
Платформа: Oracle Linux 7

Описание

ELSA-2021-9541: httpd security update (IMPORTANT)

[2.4.6-97.0.3.1]

  • mod_session: save one apr_strtok() [Orabug: 33338149][CVE-2021-26690]

Обновленные пакеты

Oracle Linux 7

Oracle Linux aarch64

httpd

2.4.6-97.0.3.el7_9.1

httpd-devel

2.4.6-97.0.3.el7_9.1

httpd-manual

2.4.6-97.0.3.el7_9.1

httpd-tools

2.4.6-97.0.3.el7_9.1

mod_ldap

2.4.6-97.0.3.el7_9.1

mod_proxy_html

2.4.6-97.0.3.el7_9.1

mod_session

2.4.6-97.0.3.el7_9.1

mod_ssl

2.4.6-97.0.3.el7_9.1

Oracle Linux x86_64

httpd

2.4.6-97.0.3.el7_9.1

httpd-devel

2.4.6-97.0.3.el7_9.1

httpd-manual

2.4.6-97.0.3.el7_9.1

httpd-tools

2.4.6-97.0.3.el7_9.1

mod_ldap

2.4.6-97.0.3.el7_9.1

mod_proxy_html

2.4.6-97.0.3.el7_9.1

mod_session

2.4.6-97.0.3.el7_9.1

mod_ssl

2.4.6-97.0.3.el7_9.1

Связанные CVE

Связанные уязвимости

CVSS3: 7.5
ubuntu
около 4 лет назад

Apache HTTP Server versions 2.4.0 to 2.4.46 A specially crafted Cookie header handled by mod_session can cause a NULL pointer dereference and crash, leading to a possible Denial Of Service

CVSS3: 7.5
redhat
около 4 лет назад

Apache HTTP Server versions 2.4.0 to 2.4.46 A specially crafted Cookie header handled by mod_session can cause a NULL pointer dereference and crash, leading to a possible Denial Of Service

CVSS3: 7.5
nvd
около 4 лет назад

Apache HTTP Server versions 2.4.0 to 2.4.46 A specially crafted Cookie header handled by mod_session can cause a NULL pointer dereference and crash, leading to a possible Denial Of Service

CVSS3: 7.5
msrc
около 4 лет назад

Описание отсутствует

CVSS3: 7.5
debian
около 4 лет назад

Apache HTTP Server versions 2.4.0 to 2.4.46 A specially crafted Cookie ...