RHSA-2025:12838: Moderate: mod_security security update
ModSecurity is an open source intrusion detection and prevention engine for web applications.Security Fix(es): modsecurity: ModSecurity Denial of Service Vulnerability (CVE-2025-48866) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2025:12838?
The severity of RHSA-2025:12838 is determined by the Denial of Service vulnerability associated with CVE-2025-48866.
How do I fix RHSA-2025:12838?
To fix RHSA-2025:12838, update ModSecurity to the latest patched version as provided by the vendor.
What is CVE-2025-48866 related to RHSA-2025:12838?
CVE-2025-48866 pertains to a Denial of Service vulnerability in ModSecurity that can disrupt service availability.
What impact does RHSA-2025:12838 have on my system?
RHSA-2025:12838 can potentially allow attackers to exploit the Denial of Service vulnerability, impacting the availability of web applications.
Is there a workaround for RHSA-2025:12838?
Currently, the recommended action is to apply the security updates rather than relying on a workaround for RHSA-2025:12838.