[CLSA-2025:1767027096] httpd: Fix of CVE-2025-58098
Type:
security
Severity:
Important
Release date:
2025-12-29 16:51:40 UTC
Description:
- CVE-2025-58098: prevent SSI args from being passed to CGI scripts
Updated packages:
  • httpd-2.4.62-4.el9_6.4.tuxcare.els1.x86_64.rpm
    sha:827e9e31e00a336dcdf2dece58d0d5871c60f70d1279106b9718cfafb2b05ac3
  • httpd-core-2.4.62-4.el9_6.4.tuxcare.els1.x86_64.rpm
    sha:962a32a1a76c7ae618ce14f75d81eb5e06d5a1d2e7eaaa62dae3e70df008679e
  • httpd-devel-2.4.62-4.el9_6.4.tuxcare.els1.x86_64.rpm
    sha:0ef7460aee99d0f1deaa85a176b02a51ad6e0aeb3cb701a1d3a34067e7dd28f4
  • httpd-filesystem-2.4.62-4.el9_6.4.tuxcare.els1.noarch.rpm
    sha:b8897e871ba78e64f9aaaab589253b0a21d3d0a9ac599b8663929122a931c7e5
  • httpd-manual-2.4.62-4.el9_6.4.tuxcare.els1.noarch.rpm
    sha:34f7423658d2c822422634b0f9615dc4b20ccb60d95e7d2dd2650373c35feb4d
  • httpd-tools-2.4.62-4.el9_6.4.tuxcare.els1.x86_64.rpm
    sha:d1da52c01f9c483bb1bd03a46e8883cdfe0f0eb6f01154dee8fbaecb2209cf44
  • mod_ldap-2.4.62-4.el9_6.4.tuxcare.els1.x86_64.rpm
    sha:06ea3c242ab897c7d3df9161ae5578de038b903e4b19882fafaa264b5cfca3df
  • mod_lua-2.4.62-4.el9_6.4.tuxcare.els1.x86_64.rpm
    sha:1c54f896f40d38a0281ef9f67d38601bd362025e57a51237e386fb6d29697764
  • mod_proxy_html-2.4.62-4.el9_6.4.tuxcare.els1.x86_64.rpm
    sha:9cce0ebe9a072acf6996274f0ef88b95ec4015184442254022f0e7f4b04727e4
  • mod_session-2.4.62-4.el9_6.4.tuxcare.els1.x86_64.rpm
    sha:c3b2afcea9474e917d4b9cfc97508f2e9f6a83ca3c3d4223f1b42e4746c169ae
  • mod_ssl-2.4.62-4.el9_6.4.tuxcare.els1.x86_64.rpm
    sha:18a83da2e543afde9e2a8d806d2c7a7026e8d6db2fef1aa07b46709cda34fa54
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.