Описание
ELSA-2026-22551: mod_http2 security update (MODERATE)
[2.0.26-6.1]
- Resolves: RHEL-182417 - mod_http2: HTTP/2: Remote Denial of Service via compression bomb and Slowloris-style attack (CVE-2026-49975)
[2.0.26-6]
- Resolves: RHEL-166293 - httpd: Apache HTTP Server: HTTP/2 DoS by Memory Increase (CVE-2025-53020)
Обновленные пакеты
Oracle Linux 9
Oracle Linux aarch64
mod_http2
2.0.26-6.el9_8.1
Oracle Linux x86_64
mod_http2
2.0.26-6.el9_8.1
Связанные CVE
Связанные уязвимости
Late Release of Memory after Effective Lifetime vulnerability in Apache HTTP Server. This issue affects Apache HTTP Server: from 2.4.17 up to 2.4.63. Users are recommended to upgrade to version 2.4.64, which fixes the issue.
Late Release of Memory after Effective Lifetime vulnerability in Apache HTTP Server. This issue affects Apache HTTP Server: from 2.4.17 up to 2.4.63. Users are recommended to upgrade to version 2.4.64, which fixes the issue.
Late Release of Memory after Effective Lifetime vulnerability in Apache HTTP Server. This issue affects Apache HTTP Server: from 2.4.17 up to 2.4.63. Users are recommended to upgrade to version 2.4.64, which fixes the issue.
Late Release of Memory after Effective Lifetime vulnerability in Apach ...