Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

rocky логотип

RLSA-2026:34355

Опубликовано: 07 июл. 2026
Источник: rocky
Оценка: Moderate

Описание

Moderate: mod_http2 security, bug fix, and enhancement update

The mod_h2 Apache httpd module implements the HTTP2 protocol (h2+h2c) on top of libnghttp2 for httpd 2.4 servers.

Security Fix(es):

  • httpd: mod_http2: Apache HTTP Server mod_http2: Use After Free vulnerability allows arbitrary code execution or denial of service. (CVE-2026-48913)

  • httpd: Apache HTTP Server: Out-of-bounds Read in mod_headers and mod_mime (CVE-2026-43951)

Bug Fix(es) and Enhancement(s):

  • address CVE-2026-43951 and CVE-2026-48913 in mod_http2 (JIRA:Rocky Linux-188008)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Затронутые продукты

  • Rocky Linux 10

НаименованиеАрхитектураРелизRPM
mod_http2x86_644.el10_2.2mod_http2-2.0.29-4.el10_2.2.x86_64.rpm

Показывать по

Связанные CVE

Связанные уязвимости

oracle-oval
15 дней назад

ELSA-2026-34355: mod_http2 security, bug fix, and enhancement update (MODERATE)

suse-cvrf
24 дня назад

Security update for apache2

suse-cvrf
25 дней назад

Security update for apache2

suse-cvrf
28 дней назад

Security update for apache2

suse-cvrf
30 дней назад

Security update for apache2