gpp_maybe Security update for apache2
SUSE-SLE-Module-Server-Applications-15-SP7-2026-2759


This update for apache2 fixes the following issues - CVE-2026-29167: mod_ldap per-dir use-after-free (bsc#1267976). - CVE-2026-29170: mod_proxy_ftp XSS (bsc#1267977). - CVE-2026-34355: mod_proxy_html buffer overflow (bsc#1267978). - CVE-2026-34356: malicious backend servers can lead to a heap-based buffer overflow (bsc#1267955). - CVE-2026-42535: malicious path manipulation can lead to child process crashes (bsc#1267956). - CVE-2026-42536: processing untrusted content can lead to a heap-based buffer overflow (bsc#1267962). - CVE-2026-43951: out-of-bound read in `merge_response_headers` can cause crash (bsc#1267963). - CVE-2026-44119: improper privilege management can lead to an unauthorized read (bsc#1267965). - CVE-2026-44185: Stack Buffer Over-Read in mod_ssl OCSP `send_request` (bsc#1267969). - CVE-2026-44186: responses from an attacker-controlled FTP backend can lead to resource exhaustion and a denial of service (bsc#1267970). - CVE-2026-44631: crafted regular expression can lead to a buffer underwrite (bsc#1267971). - CVE-2026-48913: file handle exhaustion during request processing in mod_http2 can lead to a use-after-free (bsc#1267972). - CVE-2026-49975: Fix cookie header accounting against LimitRequestFields (bsc#1267503).


cloud_download Downloads

Server Applications Module 15.7 aarch64
  • Packages
    apache2-devel
    The Apache HTTPD Server
    2.4.66-150700.4.23.1 lock rpm lock src
    apache2-manual
    The Apache HTTPD Server
    2.4.66-150700.4.23.1 lock rpm lock src
    apache2-utils
    The Apache HTTPD Server
    2.4.66-150700.4.23.1 lock rpm lock src
    apache2-worker
    The Apache HTTPD Server
    2.4.66-150700.4.23.1 lock rpm lock src
Server Applications Module 15.7 ppc64le
  • Packages
    apache2-devel
    The Apache HTTPD Server
    2.4.66-150700.4.23.1 lock rpm lock src
    apache2-manual
    The Apache HTTPD Server
    2.4.66-150700.4.23.1 lock rpm lock src
    apache2-utils
    The Apache HTTPD Server
    2.4.66-150700.4.23.1 lock rpm lock src
    apache2-worker
    The Apache HTTPD Server
    2.4.66-150700.4.23.1 lock rpm lock src
Server Applications Module 15.7 s390x
  • Packages
    apache2-devel
    The Apache HTTPD Server
    2.4.66-150700.4.23.1 lock rpm lock src
    apache2-manual
    The Apache HTTPD Server
    2.4.66-150700.4.23.1 lock rpm lock src
    apache2-utils
    The Apache HTTPD Server
    2.4.66-150700.4.23.1 lock rpm lock src
    apache2-worker
    The Apache HTTPD Server
    2.4.66-150700.4.23.1 lock rpm lock src
Server Applications Module 15.7 x86_64
  • Packages
    apache2-devel
    The Apache HTTPD Server
    2.4.66-150700.4.23.1 lock rpm lock src
    apache2-manual
    The Apache HTTPD Server
    2.4.66-150700.4.23.1 lock rpm lock src
    apache2-utils
    The Apache HTTPD Server
    2.4.66-150700.4.23.1 lock rpm lock src
    apache2-worker
    The Apache HTTPD Server
    2.4.66-150700.4.23.1 lock rpm lock src