Release date:
2025-09-16 14:00:03 UTC
Description:
- CVE-2024-47252: escape user-supplied data in mod_ssl to prevent untrusted
SSL/TLS clients from inserting escape characters into log files
- CVE-2025-49812: remove support for TLS upgrade to prevent HTTP
desynchronisation attack
Updated packages:
-
httpd-2.4.6-99.0.5.el7_9.1.tuxcare.els6.x86_64.rpm
sha:913a88e2ab5f157c6612ad1cef59b7e1690cb6efb4613839023fdd2999a67943
-
httpd-devel-2.4.6-99.0.5.el7_9.1.tuxcare.els6.x86_64.rpm
sha:f05f200af91b8bc403d76b45a2c236259deeb16b968448c9e6ff35ad29a786cc
-
httpd-manual-2.4.6-99.0.5.el7_9.1.tuxcare.els6.noarch.rpm
sha:e30c9bffcc466c8e6b42a1a47636011d3e2f9ed1dabbde0e538c7531fe4864a7
-
httpd-tools-2.4.6-99.0.5.el7_9.1.tuxcare.els6.x86_64.rpm
sha:6dd2324d3c28522869be278cf5333852d41ab671c0d8fa85ab1f7f2c581ad94f
-
mod_ldap-2.4.6-99.0.5.el7_9.1.tuxcare.els6.x86_64.rpm
sha:ae7ec0483dccbd105732e5e56a2820b47e287e716d4a526815fa95dedeb287b4
-
mod_proxy_html-2.4.6-99.0.5.el7_9.1.tuxcare.els6.x86_64.rpm
sha:06b96e9ae26f319e39a04f039817c759ea55728c8c26bb4ede7eb0604dd4f3b9
-
mod_session-2.4.6-99.0.5.el7_9.1.tuxcare.els6.x86_64.rpm
sha:1d04f61db46e49368d50777b1535914191485c0f899188994552b4b6f438a071
-
mod_ssl-2.4.6-99.0.5.el7_9.1.tuxcare.els6.x86_64.rpm
sha:8b9525e554c5efac417a3c1ee84a9306198cafc27ecdfdeb9ccb8f38711dbfd5
Notes:
This page is generated automatically and has not been checked for errors. For clarification or
corrections please contact the
CloudLinux Packaging Team.