Apache HTTP Server is a powerful and flexible HTTP/1.1 compliant web server.
Security Fix(es):
A vulnerability was found in Apache HTTP Server (Web Server) (affected version not known). It has been rated as critical.Using CWE to declare the problem leads to CWE-404. The product does not release or incorrectly releases a resource before it is made available for re-use.Impacted is availability.The exploit is available at blog.calif.io. It is declared as proof-of-concept. We expect the 0-day to have been worth approximately $5k-$25k.Applying a patch is able to eliminate this problem.(CVE-2026-49975)
{
"severity": "High"
}{
"src": [
"httpd-2.4.51-31.oe2203sp4.src.rpm"
],
"x86_64": [
"httpd-2.4.51-31.oe2203sp4.x86_64.rpm",
"httpd-debuginfo-2.4.51-31.oe2203sp4.x86_64.rpm",
"httpd-debugsource-2.4.51-31.oe2203sp4.x86_64.rpm",
"httpd-devel-2.4.51-31.oe2203sp4.x86_64.rpm",
"httpd-tools-2.4.51-31.oe2203sp4.x86_64.rpm",
"mod_ldap-2.4.51-31.oe2203sp4.x86_64.rpm",
"mod_md-2.4.51-31.oe2203sp4.x86_64.rpm",
"mod_proxy_html-2.4.51-31.oe2203sp4.x86_64.rpm",
"mod_session-2.4.51-31.oe2203sp4.x86_64.rpm",
"mod_ssl-2.4.51-31.oe2203sp4.x86_64.rpm"
],
"aarch64": [
"httpd-2.4.51-31.oe2203sp4.aarch64.rpm",
"httpd-debuginfo-2.4.51-31.oe2203sp4.aarch64.rpm",
"httpd-debugsource-2.4.51-31.oe2203sp4.aarch64.rpm",
"httpd-devel-2.4.51-31.oe2203sp4.aarch64.rpm",
"httpd-tools-2.4.51-31.oe2203sp4.aarch64.rpm",
"mod_ldap-2.4.51-31.oe2203sp4.aarch64.rpm",
"mod_md-2.4.51-31.oe2203sp4.aarch64.rpm",
"mod_proxy_html-2.4.51-31.oe2203sp4.aarch64.rpm",
"mod_session-2.4.51-31.oe2203sp4.aarch64.rpm",
"mod_ssl-2.4.51-31.oe2203sp4.aarch64.rpm"
],
"noarch": [
"httpd-filesystem-2.4.51-31.oe2203sp4.noarch.rpm",
"httpd-help-2.4.51-31.oe2203sp4.noarch.rpm"
]
}