[SUSE-SU-2024:1627-1] Security update for apache2

Severity Important
CVEs 3

Security update for apache2

This update for apache2 fixes the following issues:

  • CVE-2023-38709: Fixed faulty input validation inside the HTTP response splitting code (bsc#1222330).
  • CVE-2024-24795: Fixed handling of malicious HTTP splitting response headers in multiple modules (bsc#1222332).
  • CVE-2024-27316: Fixed HTTP/2 CONTINUATION frames that could have been utilized for DoS attacks (bsc#1221401).
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...