Apache HTTP Server is a powerful and flexible HTTP/1.1 compliant web server.
Security Fix(es):
A NULL pointer dereference in the modauthnsocache in Apache HTTP Server 2.4.66 and earlier allows an unauthenticated remote user to crash a child process in a caching forward proxy configuration.
Users are recommended to upgrade to version 2.4.67, which fixes this issue.(CVE-2026-33007)
HTTP response splitting vulnerability in multiple Apache HTTP Server modules with untrusted or compromised backend servers.
This issue affects Apache HTTP Server: from through 2.4.66.
Users are recommended to upgrade to version 2.4.67, which fixes the issue.(CVE-2026-33523)
Out-of-bounds Read vulnerability in modproxyajp of
Apache HTTP Server.
This issue affects Apache HTTP Server: through 2.4.66.
Users are recommended to upgrade to version 2.4.67, which fixes the issue.(CVE-2026-33857)
Improper Null Termination, Out-of-bounds Read vulnerability in Apache HTTP Server.
This issue affects Apache HTTP Server: through 2.4.66.
Users are recommended to upgrade to version 2.4.67, which fixes the issue.(CVE-2026-34032)
{
"severity": "Medium"
}{
"x86_64": [
"httpd-2.4.51-30.oe2203sp4.x86_64.rpm",
"httpd-debuginfo-2.4.51-30.oe2203sp4.x86_64.rpm",
"httpd-debugsource-2.4.51-30.oe2203sp4.x86_64.rpm",
"httpd-devel-2.4.51-30.oe2203sp4.x86_64.rpm",
"httpd-tools-2.4.51-30.oe2203sp4.x86_64.rpm",
"mod_ldap-2.4.51-30.oe2203sp4.x86_64.rpm",
"mod_md-2.4.51-30.oe2203sp4.x86_64.rpm",
"mod_proxy_html-2.4.51-30.oe2203sp4.x86_64.rpm",
"mod_session-2.4.51-30.oe2203sp4.x86_64.rpm",
"mod_ssl-2.4.51-30.oe2203sp4.x86_64.rpm"
],
"src": [
"httpd-2.4.51-30.oe2203sp4.src.rpm"
],
"noarch": [
"httpd-filesystem-2.4.51-30.oe2203sp4.noarch.rpm",
"httpd-help-2.4.51-30.oe2203sp4.noarch.rpm"
],
"aarch64": [
"httpd-2.4.51-30.oe2203sp4.aarch64.rpm",
"httpd-debuginfo-2.4.51-30.oe2203sp4.aarch64.rpm",
"httpd-debugsource-2.4.51-30.oe2203sp4.aarch64.rpm",
"httpd-devel-2.4.51-30.oe2203sp4.aarch64.rpm",
"httpd-tools-2.4.51-30.oe2203sp4.aarch64.rpm",
"mod_ldap-2.4.51-30.oe2203sp4.aarch64.rpm",
"mod_md-2.4.51-30.oe2203sp4.aarch64.rpm",
"mod_proxy_html-2.4.51-30.oe2203sp4.aarch64.rpm",
"mod_session-2.4.51-30.oe2203sp4.aarch64.rpm",
"mod_ssl-2.4.51-30.oe2203sp4.aarch64.rpm"
]
}