Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

rocky логотип

RLSA-2021:1809

Опубликовано: 18 мая 2021
Источник: rocky
Оценка: Moderate

Описание

Moderate: httpd:2.4 security, bug fix, and enhancement update

The httpd packages provide the Apache HTTP Server, a powerful, efficient, and extensible web server.

Security Fix(es):

  • httpd: mod_session_cookie does not respect expiry time (CVE-2018-17199)

  • httpd: mod_proxy_uwsgi buffer overflow (CVE-2020-11984)

  • httpd: mod_http2 concurrent pool usage (CVE-2020-11993)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Additional Changes:

For detailed information on changes in this release, see the Rocky Linux 8.4 Release Notes linked from the References section.

Затронутые продукты

  • Rocky Linux 8

НаименованиеАрхитектураРелизRPM
httpdaarch6439.module+el8.4.0+571+fd70afb1httpd-2.4.37-39.module+el8.4.0+571+fd70afb1.aarch64.rpm
httpd-develaarch6439.module+el8.4.0+571+fd70afb1httpd-devel-2.4.37-39.module+el8.4.0+571+fd70afb1.aarch64.rpm
httpd-filesystemnoarch39.module+el8.4.0+571+fd70afb1httpd-filesystem-2.4.37-39.module+el8.4.0+571+fd70afb1.noarch.rpm
httpd-manualnoarch39.module+el8.4.0+571+fd70afb1httpd-manual-2.4.37-39.module+el8.4.0+571+fd70afb1.noarch.rpm
httpd-toolsaarch6439.module+el8.4.0+571+fd70afb1httpd-tools-2.4.37-39.module+el8.4.0+571+fd70afb1.aarch64.rpm
mod_http2aarch643.module+el8.4.0+553+7a69454bmod_http2-1.15.7-3.module+el8.4.0+553+7a69454b.aarch64.rpm
mod_http2aarch643.module+el8.5.0+695+1fa8055emod_http2-1.15.7-3.module+el8.5.0+695+1fa8055e.aarch64.rpm
mod_ldapaarch6439.module+el8.4.0+571+fd70afb1mod_ldap-2.4.37-39.module+el8.4.0+571+fd70afb1.aarch64.rpm
mod_mdaarch648.module+el8.5.0+695+1fa8055emod_md-2.0.8-8.module+el8.5.0+695+1fa8055e.aarch64.rpm
mod_mdaarch648.module+el8.4.0+553+7a69454bmod_md-2.0.8-8.module+el8.4.0+553+7a69454b.aarch64.rpm

Показывать по

Связанные уязвимости

oracle-oval
больше 5 лет назад

ELSA-2021-1809: httpd:2.4 security, bug fix, and enhancement update (MODERATE)

suse-cvrf
около 6 лет назад

Security update for apache2

suse-cvrf
около 6 лет назад

Security update for apache2

suse-cvrf
около 6 лет назад

Security update for apache2

suse-cvrf
около 6 лет назад

Security update for apache2