Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2025-49630

Опубликовано: 10 июл. 2025
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS3: 7.5

Описание

In certain proxy configurations, a denial of service attack against Apache HTTP Server versions 2.4.26 through to 2.4.63 can be triggered by untrusted clients causing an assertion in mod_proxy_http2. Configurations affected are a reverse proxy is configured for an HTTP/2 backend, with ProxyPreserveHost set to "on".

РелизСтатусПримечание
devel

released

2.4.64-1ubuntu1
esm-infra-legacy/trusty

not-affected

esm-infra/bionic

released

2.4.29-1ubuntu4.27+esm6
esm-infra/focal

released

2.4.41-4ubuntu3.23+esm2
esm-infra/xenial

not-affected

jammy

released

2.4.52-1ubuntu4.15
noble

released

2.4.58-1ubuntu8.7
plucky

released

2.4.63-1ubuntu1.1
upstream

released

2.4.64-1

Показывать по

EPSS

Процентиль: 55%
0.0033
Низкий

7.5 High

CVSS3

Связанные уязвимости

CVSS3: 7.5
redhat
3 месяца назад

In certain proxy configurations, a denial of service attack against Apache HTTP Server versions 2.4.26 through to 2.4.63 can be triggered by untrusted clients causing an assertion in mod_proxy_http2. Configurations affected are a reverse proxy is configured for an HTTP/2 backend, with ProxyPreserveHost set to "on".

CVSS3: 7.5
nvd
3 месяца назад

In certain proxy configurations, a denial of service attack against Apache HTTP Server versions 2.4.26 through to 2.4.63 can be triggered by untrusted clients causing an assertion in mod_proxy_http2. Configurations affected are a reverse proxy is configured for an HTTP/2 backend, with ProxyPreserveHost set to "on".

CVSS3: 7.5
msrc
3 месяца назад

Описание отсутствует

CVSS3: 7.5
debian
3 месяца назад

In certain proxy configurations, a denial of service attack againstApa ...

rocky
12 дней назад

Moderate: mod_http2 security update

EPSS

Процентиль: 55%
0.0033
Низкий

7.5 High

CVSS3