Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-73636

Опубликовано: 01 окт. 2026
Источник: redhat
CVSS3: 8.1
EPSS Низкий

Описание

A flaw was found in the mod_auth_digest module of the Apache HTTP Server. This vulnerability allows an attacker positioned on the network to bypass authentication by replaying previously intercepted user credentials. When the server is configured with a nonce (a single-use security token) lifetime of zero, an attacker can send crafted requests that prematurely clear the client session entry from shared memory, enabling unauthorized access using the replayed credentials.

Меры по смягчению последствий

Ensure that AuthDigestNonceLifetime is not set to 0. If digest authentication is not required, disable mod_auth_digest.

  1. To retain digest authentication with safe settings, set a positive non-zero value (such as the default 300 seconds) or remove the explicit zero setting from /etc/httpd/conf/httpd.conf or relevant files in /etc/httpd/conf.d/:
AuthDigestNonceLifetime 300
  1. If HTTP digest authentication is not needed, disable the module by commenting out the corresponding line in /etc/httpd/conf.modules.d/00-base.conf:
#LoadModule auth_digest_module modules/mod_auth_digest.so
  1. Restart the web server to apply changes:
systemctl restart httpd

Warning: Restarting or reloading the httpd service will briefly disrupt active client connections. Disabling the module will break authentication for virtual hosts or directories relying on digest authentication.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 10httpdAffected
Red Hat Enterprise Linux 6httpdAffected
Red Hat Enterprise Linux 7httpdAffected
Red Hat Enterprise Linux 8httpd:2.4/httpdAffected
Red Hat Enterprise Linux 9httpdAffected
Red Hat Hardened Imageshttpd-main-2.4.69-1.hum1FixedRHSA-2026:7485802.10.2026

Показывать по

Дополнительная информация

Статус:

Important
Дефект:
CWE-294
https://bugzilla.redhat.com/show_bug.cgi?id=2544849httpd: httpd: Authentication bypass via credential replay in mod_auth_digest

EPSS

Процентиль: 28%
0.00368
Низкий

8.1 High

CVSS3

Связанные уязвимости

CVSS3: 8.1
nvd
2 дня назад

Authentication bypass by capture-replay in mod_auth_digest in Apache Software Foundation Apache HTTP Server 2.4.x on all platforms allows a man-in-the-middle (MITM) attacker to replay captured digest authentication credentials via crafted requests that trigger garbage collection of the client's shared memory entry when AuthDigestNonceLifetime is set to 0. Users are recommended to upgrade to version 2.4.69, which fixes this issue.

CVSS3: 8.1
debian
2 дня назад

Authentication bypass by capture-replay in mod_auth_digest in Apache S ...

CVSS3: 8.1
github
2 дня назад

Authentication bypass by capture-replay in mod_auth_digest in Apache Software Foundation Apache HTTP Server 2.4.x on all platforms allows a man-in-the-middle (MITM) attacker to replay captured digest authentication credentials via crafted requests that trigger garbage collection of the client's shared memory entry when AuthDigestNonceLifetime is set to 0. Users are recommended to upgrade to version 2.4.69, which fixes this issue.

EPSS

Процентиль: 28%
0.00368
Низкий

8.1 High

CVSS3