[CLSA-2025:1757014900] Fix CVE(s): CVE-2025-49812
Type:
security
Severity:
Important
Release date:
2025-09-04 19:41:44 UTC
Description:
* SECURITY UPDATE: mod_ssl TLS upgrade attack - debian/patches/CVE-2025-49812.patch: remove antiquated 'SSLEngine optional' TLS upgrade in modules/ssl/ssl_engine_config.c, modules/ssl/ssl_engine_init.c, modules/ssl/ssl_engine_kernel.c, modules/ssl/ssl_private.h. - CVE-2025-49812
Updated packages:
  • apache2_2.4.29-1ubuntu4.27+tuxcare.els8_amd64.deb
    sha:be8f2a70ba5f958ef2b8147aaaf5778676afd2db
  • apache2-bin_2.4.29-1ubuntu4.27+tuxcare.els8_amd64.deb
    sha:2a17ad1784389762336e343a92f895c5abc259e7
  • apache2-data_2.4.29-1ubuntu4.27+tuxcare.els8_all.deb
    sha:50760c311d2aef4b4969118b351cd37afd3092ea
  • apache2-dev_2.4.29-1ubuntu4.27+tuxcare.els8_amd64.deb
    sha:c326cebfc60c57fb7471b83eb8d11ce00ca60b0e
  • apache2-doc_2.4.29-1ubuntu4.27+tuxcare.els8_all.deb
    sha:41d0d78257ca750eedcd09d57f175aedd6dfd5ce
  • apache2-ssl-dev_2.4.29-1ubuntu4.27+tuxcare.els8_amd64.deb
    sha:c709d0b98480b6403ee4a526abb9218ec3bcbc66
  • apache2-suexec-custom_2.4.29-1ubuntu4.27+tuxcare.els8_amd64.deb
    sha:278f696c98ed6430cf653a18f1053169699b4753
  • apache2-suexec-pristine_2.4.29-1ubuntu4.27+tuxcare.els8_amd64.deb
    sha:8d96843e74ebdfc2ed5459fc4efdca4620876db3
  • apache2-utils_2.4.29-1ubuntu4.27+tuxcare.els8_amd64.deb
    sha:63f72f0c451957fb65841af6fb69361ef9ba0a34
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.