Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2026-25057

Опубликовано: 23 июн. 2026
Источник: oracle-oval
Платформа: Oracle Linux 9

Описание

ELSA-2026-25057: mod_http2 security update (IMPORTANT)

[2.0.26-6.1]

  • Resolves: RHEL-182417 - mod_http2: HTTP/2: Remote Denial of Service via compression bomb and Slowloris-style attack (CVE-2026-49975)

[2.0.26-6]

  • Resolves: RHEL-166293 - httpd: Apache HTTP Server: HTTP/2 DoS by Memory Increase (CVE-2025-53020)

Обновленные пакеты

Oracle Linux 9

Oracle Linux aarch64

mod_http2

2.0.26-6.el9_8.1

Oracle Linux x86_64

mod_http2

2.0.26-6.el9_8.1

Связанные CVE

Связанные уязвимости

CVSS3: 7.5
ubuntu
около 2 месяцев назад

Memory Allocation with Excessive Size Value vulnerability in Apache HTTP Server's mod_http leads to denial of service via malicious HTTP requests. This issue affects Apache HTTP Server: from 2.4.17 through 2.4.67.

CVSS3: 7.5
redhat
около 2 месяцев назад

Memory Allocation with Excessive Size Value vulnerability in Apache HTTP Server's mod_http leads to denial of service via malicious HTTP requests. This issue affects Apache HTTP Server: from 2.4.17 through 2.4.67.

CVSS3: 7.5
nvd
около 2 месяцев назад

Memory Allocation with Excessive Size Value vulnerability in Apache HTTP Server's mod_http leads to denial of service via malicious HTTP requests. This issue affects Apache HTTP Server: from 2.4.17 through 2.4.67.

CVSS3: 7.5
msrc
около 2 месяцев назад

Apache HTTP Server: mod_http2 denial of service

CVSS3: 7.5
debian
около 2 месяцев назад

Memory Allocation with Excessive Size Value vulnerability in Apache HT ...