ALSA-2022:0891
Dashboard / Vulnerabilities / ALSA-2022:0891
Summary: Moderate: httpd:2.4 security update
Details: The httpd packages provide the Apache HTTP Server, a powerful, efficient, and extensible web server. Security Fix(es): * httpd: NULL pointer dereference via malformed requests (CVE-2021-34798) * httpd: Out-of-bounds write in ap_escape_quotes() via malicious input (CVE-2021-39275) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
References: https://errata.almalinux.org/8/ALSA-2022-0891.html, https://vulners.com/cve/CVE-2021-34798, https://vulners.com/cve/CVE-2021-39275
Affected packages
Package
Name: httpd
Purl: pkg:rpm/almalinux/httpd
Affected ranges
Type: ECOSYSTEM
Events:
