First published: Mon Jul 01 2024(Updated: )
Vulnerability in core of Apache HTTP Server 2.4.59 and earlier are vulnerably to information disclosure, SSRF or local script execution via backend applications whose response headers are malicious or exploitable. Users are recommended to upgrade to version 2.4.60, which fixes this issue.
Affected Software | Affected Version | How to fix |
---|---|---|
Apache Http Server | <=2.4.59 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of REDHAT-BUG-2295015 is high due to its potential for information disclosure and exploitation.
To fix REDHAT-BUG-2295015, upgrade Apache HTTP Server to version 2.4.60 or later.
The risks associated with REDHAT-BUG-2295015 include information disclosure, SSRF, and the possibility of local script execution.
Apache HTTP Server versions 2.4.59 and earlier are affected by REDHAT-BUG-2295015.
Administrators and users of Apache HTTP Server versions 2.4.59 and earlier should be concerned about REDHAT-BUG-2295015.