Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2026-22528

Опубликовано: 17 июл. 2026
Источник: oracle-oval
Платформа: Oracle Linux 10

Описание

ELSA-2026-22528: mod_http2 security update (MODERATE)

[2.0.29-4.2]

  • Resolves: RHEL-188008 - address CVE-2026-43951, CVE-2026-48913

[2.0.29-4.1]

  • Resolves: RHEL-182410 - mod_http2: HTTP/2: Remote Denial of Service via compression bomb and Slowloris-style attack (CVE-2026-49975)

[2.0.29-4]

  • Resolves: RHEL-166269 - httpd: Apache HTTP Server: HTTP/2 DoS by Memory Increase (CVE-2025-53020)

Обновленные пакеты

Oracle Linux 10

Oracle Linux aarch64

mod_http2

2.0.29-4.el10_2.2

Oracle Linux x86_64

mod_http2

2.0.29-4.el10_2.2

Связанные CVE

Связанные уязвимости

CVSS3: 7.5
ubuntu
около 1 года назад

Late Release of Memory after Effective Lifetime vulnerability in Apache HTTP Server. This issue affects Apache HTTP Server: from 2.4.17 up to 2.4.63. Users are recommended to upgrade to version 2.4.64, which fixes the issue.

CVSS3: 5.3
redhat
около 1 года назад

Late Release of Memory after Effective Lifetime vulnerability in Apache HTTP Server. This issue affects Apache HTTP Server: from 2.4.17 up to 2.4.63. Users are recommended to upgrade to version 2.4.64, which fixes the issue.

CVSS3: 7.5
nvd
около 1 года назад

Late Release of Memory after Effective Lifetime vulnerability in Apache HTTP Server. This issue affects Apache HTTP Server: from 2.4.17 up to 2.4.63. Users are recommended to upgrade to version 2.4.64, which fixes the issue.

CVSS3: 7.5
msrc
около 1 года назад

Apache HTTP Server: HTTP/2 DoS by Memory Increase

CVSS3: 7.5
debian
около 1 года назад

Late Release of Memory after Effective Lifetime vulnerability in Apach ...