[CLSA-2023:1679000442] httpd: Fix of 2 CVEs
Type:
security
Severity:
Critical
Release date:
2023-03-16
Description:
- CVE-2023-25690: HTTP request splitting with mod_rewrite and mod_proxy - CVE-2023-27522: mod_proxy_uwsgi: HTTP response splitting
Updated packages:
  • httpd-2.4.37-43.module_el8.5.0+2114+6f259f31.tuxcare.els11.x86_64.rpm
    sha:7090fe74e449728b14a908f13dbdecaef5f57eee
  • httpd-devel-2.4.37-43.module_el8.5.0+2114+6f259f31.tuxcare.els11.x86_64.rpm
    sha:0fd1fbae42cac683664d0af24dbe1ed7258db0c0
  • httpd-filesystem-2.4.37-43.module_el8.5.0+2114+6f259f31.tuxcare.els11.noarch.rpm
    sha:d8d90a2ac8758744e2dd714dc148a59077c2c0f6
  • httpd-manual-2.4.37-43.module_el8.5.0+2114+6f259f31.tuxcare.els11.noarch.rpm
    sha:a49c04aa3ec1c5071e157a0bccfb9e637a5f7eb2
  • httpd-tools-2.4.37-43.module_el8.5.0+2114+6f259f31.tuxcare.els11.x86_64.rpm
    sha:56ea1a05819173bcf1a4ab32b7b5618d27455a59
  • mod_ldap-2.4.37-43.module_el8.5.0+2114+6f259f31.tuxcare.els11.x86_64.rpm
    sha:c2844bef772e7f3e66fd519d15961a05df1c7f05
  • mod_proxy_html-2.4.37-43.module_el8.5.0+2114+6f259f31.tuxcare.els11.x86_64.rpm
    sha:eac4df03eb0f7475ff25bd568129578bc833b686
  • mod_session-2.4.37-43.module_el8.5.0+2114+6f259f31.tuxcare.els11.x86_64.rpm
    sha:29d464f5d4518615715d76862c9027ee232ed11b
  • mod_ssl-2.4.37-43.module_el8.5.0+2114+6f259f31.tuxcare.els11.x86_64.rpm
    sha:f634d66e18efd19c24a73602ce44cf2ec6912317
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.