Описание
ELSA-2026-25225: mod_http2 security update (IMPORTANT)
[2.0.29-4.2]
- Resolves: RHEL-188008 - address CVE-2026-43951, CVE-2026-48913
[2.0.29-4.1]
- Resolves: RHEL-182410 - mod_http2: HTTP/2: Remote Denial of Service via compression bomb and Slowloris-style attack (CVE-2026-49975)
[2.0.29-4]
- Resolves: RHEL-166269 - httpd: Apache HTTP Server: HTTP/2 DoS by Memory Increase (CVE-2025-53020)
Обновленные пакеты
Oracle Linux 10
Oracle Linux aarch64
mod_http2
2.0.29-4.el10_2.2
Oracle Linux x86_64
mod_http2
2.0.29-4.el10_2.2
Связанные CVE
Связанные уязвимости
Memory Allocation with Excessive Size Value vulnerability in Apache HTTP Server's mod_http leads to denial of service via malicious HTTP requests. This issue affects Apache HTTP Server: from 2.4.17 through 2.4.67.
Memory Allocation with Excessive Size Value vulnerability in Apache HTTP Server's mod_http leads to denial of service via malicious HTTP requests. This issue affects Apache HTTP Server: from 2.4.17 through 2.4.67.
Memory Allocation with Excessive Size Value vulnerability in Apache HTTP Server's mod_http leads to denial of service via malicious HTTP requests. This issue affects Apache HTTP Server: from 2.4.17 through 2.4.67.
Memory Allocation with Excessive Size Value vulnerability in Apache HT ...