REDHAT-BUG-2486399: Medium severity Apache HTTP Server vulnerability
Buffer Underwrite vulnerability in Apache HTTP Server on crafted regular expressions in the configuration.
This issue affects Apache HTTP Server: from 2.4.0 through 2.4.67.
Users are recommended to upgrade to version 2.4.68, which fixes the issue.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Apache HTTP Serverto a version that resolves this vulnerability.Fixed in 2.4.68
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-2486399?
The severity of REDHAT-BUG-2486399 is classified as medium (4).
How do I fix REDHAT-BUG-2486399?
To fix REDHAT-BUG-2486399, users should upgrade Apache HTTP Server to version 2.4.68 or later.
What types of vulnerabilities does REDHAT-BUG-2486399 relate to?
REDHAT-BUG-2486399 relates to a Buffer Underwrite vulnerability in Apache HTTP Server.
Which versions of Apache HTTP Server are affected by REDHAT-BUG-2486399?
Apache HTTP Server versions from 2.4.0 to 2.4.67 are affected by REDHAT-BUG-2486399.
When was REDHAT-BUG-2486399 published?
REDHAT-BUG-2486399 was published on June 8, 2026.