[CLSA-2023:1675985294] Fix CVE(s): CVE-2022-37436
Type:
security
Severity:
Moderate
Release date:
2023-02-09 23:28:14 UTC
Description:
* SECURITY UPDATE: mod_proxy may trigger HTTP response splitting - debian/patches/CVE-2022-37436.patch: fail on bad header - CVE-2022-37436
Updated packages:
  • apache2_2.4.18-2ubuntu3.17+tuxcare.els9_amd64.deb
    sha:9a7a3b1699e26c2252ad06906b310c14d8faba0b
  • apache2-bin_2.4.18-2ubuntu3.17+tuxcare.els9_amd64.deb
    sha:fd93c215efd03ed6b81c0bfabdee8e50549f3609
  • apache2-data_2.4.18-2ubuntu3.17+tuxcare.els9_all.deb
    sha:b882d63af34e01cc52eed82c00fb6e56b0a305d3
  • apache2-dev_2.4.18-2ubuntu3.17+tuxcare.els9_amd64.deb
    sha:3219e7d72d62d9d1cce88297fccb9b4fd5acd659
  • apache2-doc_2.4.18-2ubuntu3.17+tuxcare.els9_all.deb
    sha:4057251651cfafedf8a1b4b9c79fbe2ef812e915
  • apache2-suexec-custom_2.4.18-2ubuntu3.17+tuxcare.els9_amd64.deb
    sha:a88f8d1ea726450b598c0488dfb9f611d2c398e3
  • apache2-suexec-pristine_2.4.18-2ubuntu3.17+tuxcare.els9_amd64.deb
    sha:c4d90feb659bf9a632185caf491efd4887890834
  • apache2-utils_2.4.18-2ubuntu3.17+tuxcare.els9_amd64.deb
    sha:7cb6beec0cf9ebf580a5cdeb1ea9857d65b0b4de
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.