REDHAT-BUG-2464940: Medium severity Apache HTTP Server vulnerability
Published May 4, 2026
·Updated
Buffer Over-read vulnerability in Apache HTTP Server.
This issue affects Apache HTTP Server: through 2.4.66.
Users are recommended to upgrade to version 2.4.67, which fixes the issue.
Affected Software
1 affected component
Apache HTTP Server<=2.4.66
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Apache HTTP Serverto a version that resolves this vulnerability.Fixed in 2.4.67
Event History
May 4, 2026
Data Sourced
via Red Hat·01:01 PM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of REDHAT-BUG-2464940?
The severity of REDHAT-BUG-2464940 is medium, rated at 4.
2
How do I fix REDHAT-BUG-2464940?
To fix REDHAT-BUG-2464940, users should upgrade to Apache HTTP Server version 2.4.67.
3
What type of vulnerability is REDHAT-BUG-2464940?
REDHAT-BUG-2464940 is classified as a Buffer Over-read vulnerability in Apache HTTP Server.
4
Which versions of Apache HTTP Server are affected by REDHAT-BUG-2464940?
REDHAT-BUG-2464940 affects Apache HTTP Server versions through 2.4.66.
5
When was REDHAT-BUG-2464940 published?
REDHAT-BUG-2464940 was published on May 4, 2026.