[CLSA-2024:1723059198] httpd: Fix of 3 CVEs
Type:
security
Severity:
Important
Release date:
2024-08-07 19:33:21 UTC
Description:
- CVE-2024-39884: modules: source code disclosure with handlers configured via AddType. Resolving regression introduced by CVE-2024-38476 fix. - CVE-2024-40725: modules: source code disclosure with handlers configured via AddType. Resolving regression introduced by CVE-2024-39884 fix.
Updated packages:
  • httpd-2.4.6-99.el7.centos.1.tuxcare.els5.x86_64.rpm
    sha:cf08ca63a37e4f86e3a0a5a9f177455317517c462ee1a7c488241013b4e04f39
  • httpd-devel-2.4.6-99.el7.centos.1.tuxcare.els5.x86_64.rpm
    sha:b398a8d950c33a30e48cfb04af3f16649c43b0090398df6f8be819f6d85683fd
  • httpd-manual-2.4.6-99.el7.centos.1.tuxcare.els5.noarch.rpm
    sha:4d80233c6fb9fb8ff9ec9be1cac6ff066ca65a67190f75f32a18047ac53ed025
  • httpd-tools-2.4.6-99.el7.centos.1.tuxcare.els5.x86_64.rpm
    sha:9876767cf61fc2d6b605b25f13c01473799f16a01ad6d1cd69961765fc3f7ab3
  • mod_ldap-2.4.6-99.el7.centos.1.tuxcare.els5.x86_64.rpm
    sha:09671dbb670122ce6c2af731fbfbf7590d40c1620cefe49161874a223036bc2d
  • mod_proxy_html-2.4.6-99.el7.centos.1.tuxcare.els5.x86_64.rpm
    sha:0f7c214839e6c51bdf2b0bc3d4aeec2c4d8c9a0e2893f39972f15579ed10f7a6
  • mod_session-2.4.6-99.el7.centos.1.tuxcare.els5.x86_64.rpm
    sha:c642bc6f03f6d0a34b7a51189df3812e693b82ca7887d4bda7a056f0d4707271
  • mod_ssl-2.4.6-99.el7.centos.1.tuxcare.els5.x86_64.rpm
    sha:17dbfe78b2971bfed25bd9592bda849e863a8d5ee97b7f68ab014c7e23c6145e
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.