[CLSA-2023:1679000716] httpd: Fix of 2 CVEs
Type:
security
Severity:
Critical
Release date:
2023-03-16
Description:
- CVE-2023-25690: HTTP request splitting with mod_rewrite and mod_proxy - CVE-2023-27522: mod_proxy_uwsgi: HTTP response splitting
Updated packages:
  • httpd-2.4.37-39.module_el8.4.0+2113+54659116.1.tuxcare.els12.x86_64.rpm
    sha:f724968846a4973872223876342e19693b9668bc
  • httpd-devel-2.4.37-39.module_el8.4.0+2113+54659116.1.tuxcare.els12.x86_64.rpm
    sha:0e57f99e2eff5ff51783fdb49d8d21ecfb61be4b
  • httpd-filesystem-2.4.37-39.module_el8.4.0+2113+54659116.1.tuxcare.els12.noarch.rpm
    sha:4473b117919f6f22dd5da39e9e6f271bb3668b2a
  • httpd-manual-2.4.37-39.module_el8.4.0+2113+54659116.1.tuxcare.els12.noarch.rpm
    sha:fe6d5300a6bbd3f5ef74afd2872e068569322a3f
  • httpd-tools-2.4.37-39.module_el8.4.0+2113+54659116.1.tuxcare.els12.x86_64.rpm
    sha:1ee17c33140e094bfda5e779b990f19f41dc2f8e
  • mod_ldap-2.4.37-39.module_el8.4.0+2113+54659116.1.tuxcare.els12.x86_64.rpm
    sha:f0022061fa5c08a4703deb3bd0a7bd596637c3a7
  • mod_proxy_html-2.4.37-39.module_el8.4.0+2113+54659116.1.tuxcare.els12.x86_64.rpm
    sha:304a582abf6cc2a045bebd391cb7e07daea7e3a1
  • mod_session-2.4.37-39.module_el8.4.0+2113+54659116.1.tuxcare.els12.x86_64.rpm
    sha:61cf0a51ee0224cd969cf6e1970faffea67f6a04
  • mod_ssl-2.4.37-39.module_el8.4.0+2113+54659116.1.tuxcare.els12.x86_64.rpm
    sha:7964ed787be57bbd507e07c2691e8cf26e77def8
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.