REDHAT-BUG-2465304: Double Free
Double Free and possible RCE vulnerability in Apache HTTP Server with the HTTP/2 protocol.
This issue affects Apache HTTP Server: 2.4.66.
Users are recommended to upgrade to version 2.4.67, which fixes the issue.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Apache HTTP Serverto a version that resolves this vulnerability.Fixed in 2.4.67
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-2465304?
The severity of REDHAT-BUG-2465304 is high with a score of 7.
What type of vulnerability is REDHAT-BUG-2465304?
REDHAT-BUG-2465304 is a Double Free vulnerability which could lead to remote code execution.
How do I fix REDHAT-BUG-2465304?
To fix REDHAT-BUG-2465304, users should upgrade to Apache HTTP Server version 2.4.67.
Which version of Apache HTTP Server is affected by REDHAT-BUG-2465304?
Apache HTTP Server version 2.4.66 is affected by the vulnerability REDHAT-BUG-2465304.
What is the potential impact of REDHAT-BUG-2465304?
The potential impact of REDHAT-BUG-2465304 includes remote code execution due to the Double Free vulnerability.