gpp_maybe
Security update for apache2
SUSE-SLE-Module-Server-Applications-15-SP6-2024-2624
This update for apache2 fixes the following issues: - CVE-2024-38475: Fixed improper escaping of output in mod_rewrite (bsc#1227268) - CVE-2024-38476: Fixed server may use exploitable/malicious backend application output to run local handlers via internal redirect (bsc#1227269) - CVE-2024-38477: Fixed null pointer dereference in mod_proxy (bsc#1227270) - CVE-2024-39573: Fixed potential SSRF in mod_rewrite (bsc#1227271)
-
Release DateJul 30 2024
-
ReferencesBugzilla: 1227268, 1227269, 1227270, 1227271
CVEs: CVE-2024-38475, CVE-2024-38476, CVE-2024-38477, CVE-2024-39573 -
Typesecurity
-
Severityimportant
cloud_download Downloads
To download packages, you need to log in and have a valid subscription.
Server Applications Module 15.6 aarch64
-
Packagesapache2
The Apache Web Serverapache2-doc2.4.51-150400.6.29.1 lock src
Additional Package Documentation2.4.51-150400.6.29.1 lock rpm
Server Applications Module 15.6 ppc64le
-
Packagesapache2
The Apache Web Serverapache2-doc2.4.51-150400.6.29.1 lock src
Additional Package Documentation2.4.51-150400.6.29.1 lock rpm
Server Applications Module 15.6 s390x
-
Packagesapache2
The Apache Web Serverapache2-doc2.4.51-150400.6.29.1 lock src
Additional Package Documentation2.4.51-150400.6.29.1 lock rpm
Server Applications Module 15.6 x86_64
-
Packagesapache2
The Apache Web Serverapache2-doc2.4.51-150400.6.29.1 lock src
Additional Package Documentation2.4.51-150400.6.29.1 lock rpm