Описание
ELSA-2026-66392-0: apr-util security update (MODERATE)
[1.6.3-23.1]
- Resolves: RHEL-236629 - apr-util: Apache Portable Runtime Utility: Information disclosure via timing attack in password validation (CVE-2025-49506)
- Resolves: RHEL-236264 - apr-util: Apache Portable Runtime Utility: Heap buffer overflow in APR memcached client (CVE-2026-34502)
- Resolves: RHEL-236469 - apr-util: Apache Portable Runtime Utility: Heap buffer overflow in redis client (CVE-2026-34501)
- Resolves: RHEL-235667 - apr-util: APR-util: Denial of Service via XML stack recursion attack (CVE-2026-32327)
Обновленные пакеты
Oracle Linux 10
Oracle Linux aarch64
apr-util
1.6.3-23.el10_2.1
apr-util-devel
1.6.3-23.el10_2.1
apr-util-ldap
1.6.3-23.el10_2.1
apr-util-lmdb
1.6.3-23.el10_2.1
apr-util-mysql
1.6.3-23.el10_2.1
apr-util-odbc
1.6.3-23.el10_2.1
apr-util-openssl
1.6.3-23.el10_2.1
apr-util-pgsql
1.6.3-23.el10_2.1
apr-util-sqlite
1.6.3-23.el10_2.1
Oracle Linux x86_64
apr-util
1.6.3-23.el10_2.1
apr-util-devel
1.6.3-23.el10_2.1
apr-util-ldap
1.6.3-23.el10_2.1
apr-util-lmdb
1.6.3-23.el10_2.1
apr-util-mysql
1.6.3-23.el10_2.1
apr-util-odbc
1.6.3-23.el10_2.1
apr-util-openssl
1.6.3-23.el10_2.1
apr-util-pgsql
1.6.3-23.el10_2.1
apr-util-sqlite
1.6.3-23.el10_2.1