Количество 18
Количество 18
CVE-2026-28780
Heap-based Buffer Overflow vulnerability in mod_proxy_ajp of Apache HTTP Server. If mod_proxy_ajp connects to a malicious AJP server this AJP server can send a malicious AJP message back to mod_proxy_ajp and cause it to write 4 attacker controlled bytes after the end of a heap based buffer. This issue affects Apache HTTP Server: through 2.4.66. Users are recommended to upgrade to version 2.4.67, which fixes the issue.
CVE-2026-28780
Heap-based Buffer Overflow vulnerability in mod_proxy_ajp of Apache HTTP Server. If mod_proxy_ajp connects to a malicious AJP server this AJP server can send a malicious AJP message back to mod_proxy_ajp and cause it to write 4 attacker controlled bytes after the end of a heap based buffer. This issue affects Apache HTTP Server: through 2.4.66. Users are recommended to upgrade to version 2.4.67, which fixes the issue.
CVE-2026-28780
Heap-based Buffer Overflow vulnerability in mod_proxy_ajp of Apache HTTP Server. If mod_proxy_ajp connects to a malicious AJP server this AJP server can send a malicious AJP message back to mod_proxy_ajp and cause it to write 4 attacker controlled bytes after the end of a heap based buffer. This issue affects Apache HTTP Server: through 2.4.66. Users are recommended to upgrade to version 2.4.67, which fixes the issue.
CVE-2026-28780
Heap-based Buffer Overflow vulnerability in mod_proxy_ajp of Apache HT ...
GHSA-wpww-4qvv-xpv8
Heap-based Buffer Overflow vulnerability in mod_proxy_ajp of Apache HTTP Server. If mod_proxy_ajp connects to a malicious AJP server this AJP server can send a malicious AJP message back to mod_proxy_ajp and cause it to write 4 attacker controlled bytes after the end of a heap based buffer. This issue affects Apache HTTP Server: through 2.4.66. Users are recommended to upgrade to version 2.4.67, which fixes the issue.
BDU:2026-06407
Уязвимость модуля mod_proxy_ajp() веб-сервера Apache HTTP Server, позволяющая нарушителю вызвать отказ в обслуживании
ROS-20260714-73-0066
Уязвимость httpd
RLSA-2026:21433
Important: httpd security update
RLSA-2026:21391
Important: httpd security update
ELSA-2026-21433
ELSA-2026-21433: httpd security update (IMPORTANT)
ELSA-2026-21391
ELSA-2026-21391: httpd security update (IMPORTANT)
RLSA-2026:22140
Important: httpd:2.4 security update
ELSA-2026-22140
ELSA-2026-22140: httpd:2.4 security update (IMPORTANT)
SUSE-SU-2026:2641-1
Security update for apache2
openSUSE-SU-2026:21115-1
Security update for apache2
SUSE-SU-2026:2104-1
Security update for apache2
SUSE-SU-2026:2103-1
Security update for apache2
SUSE-SU-2026:2686-1
Security update for apache2
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-28780 Heap-based Buffer Overflow vulnerability in mod_proxy_ajp of Apache HTTP Server. If mod_proxy_ajp connects to a malicious AJP server this AJP server can send a malicious AJP message back to mod_proxy_ajp and cause it to write 4 attacker controlled bytes after the end of a heap based buffer. This issue affects Apache HTTP Server: through 2.4.66. Users are recommended to upgrade to version 2.4.67, which fixes the issue. | CVSS3: 9.8 | 1% Низкий | 3 месяца назад | |
CVE-2026-28780 Heap-based Buffer Overflow vulnerability in mod_proxy_ajp of Apache HTTP Server. If mod_proxy_ajp connects to a malicious AJP server this AJP server can send a malicious AJP message back to mod_proxy_ajp and cause it to write 4 attacker controlled bytes after the end of a heap based buffer. This issue affects Apache HTTP Server: through 2.4.66. Users are recommended to upgrade to version 2.4.67, which fixes the issue. | CVSS3: 8.1 | 1% Низкий | 3 месяца назад | |
CVE-2026-28780 Heap-based Buffer Overflow vulnerability in mod_proxy_ajp of Apache HTTP Server. If mod_proxy_ajp connects to a malicious AJP server this AJP server can send a malicious AJP message back to mod_proxy_ajp and cause it to write 4 attacker controlled bytes after the end of a heap based buffer. This issue affects Apache HTTP Server: through 2.4.66. Users are recommended to upgrade to version 2.4.67, which fixes the issue. | CVSS3: 9.8 | 1% Низкий | 3 месяца назад | |
CVE-2026-28780 Heap-based Buffer Overflow vulnerability in mod_proxy_ajp of Apache HT ... | CVSS3: 9.8 | 1% Низкий | 3 месяца назад | |
GHSA-wpww-4qvv-xpv8 Heap-based Buffer Overflow vulnerability in mod_proxy_ajp of Apache HTTP Server. If mod_proxy_ajp connects to a malicious AJP server this AJP server can send a malicious AJP message back to mod_proxy_ajp and cause it to write 4 attacker controlled bytes after the end of a heap based buffer. This issue affects Apache HTTP Server: through 2.4.66. Users are recommended to upgrade to version 2.4.67, which fixes the issue. | CVSS3: 9.8 | 1% Низкий | 3 месяца назад | |
BDU:2026-06407 Уязвимость модуля mod_proxy_ajp() веб-сервера Apache HTTP Server, позволяющая нарушителю вызвать отказ в обслуживании | CVSS3: 9.8 | 1% Низкий | 6 месяцев назад | |
ROS-20260714-73-0066 Уязвимость httpd | CVSS3: 9.8 | 1% Низкий | 18 дней назад | |
RLSA-2026:21433 Important: httpd security update | около 2 месяцев назад | |||
RLSA-2026:21391 Important: httpd security update | 2 месяца назад | |||
ELSA-2026-21433 ELSA-2026-21433: httpd security update (IMPORTANT) | 15 дней назад | |||
ELSA-2026-21391 ELSA-2026-21391: httpd security update (IMPORTANT) | около 1 месяца назад | |||
RLSA-2026:22140 Important: httpd:2.4 security update | около 2 месяцев назад | |||
ELSA-2026-22140 ELSA-2026-22140: httpd:2.4 security update (IMPORTANT) | 2 месяца назад | |||
SUSE-SU-2026:2641-1 Security update for apache2 | около 1 месяца назад | |||
openSUSE-SU-2026:21115-1 Security update for apache2 | около 1 месяца назад | |||
SUSE-SU-2026:2104-1 Security update for apache2 | 2 месяца назад | |||
SUSE-SU-2026:2103-1 Security update for apache2 | 2 месяца назад | |||
SUSE-SU-2026:2686-1 Security update for apache2 | около 1 месяца назад |
Уязвимостей на страницу