|
|
Log in / Subscribe / Register

Ubuntu alert USN-8384-1 (apache2)

From:  noreply+usn-bot--- via ubuntu-security-announce <ubuntu-security-announce@lists.ubuntu.com>
To:  ubuntu-security-announce@lists.ubuntu.com
Subject:  [USN-8384-1] Apache HTTP Server vulnerability
Date:  Thu, 04 Jun 2026 16:44:25 +0000
Message-ID:  <E1wVBBB-0002cW-0E@lists.ubuntu.com>
Cc:  noreply+usn-bot@canonical.com

========================================================================== Ubuntu Security Notice USN-8384-1 June 04, 2026 apache2 vulnerability ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 26.04 LTS - Ubuntu 25.10 - Ubuntu 24.04 LTS - Ubuntu 22.04 LTS Summary: Apache HTTP Server could be made to consume excessive resources if it received specially crafted network traffic. Software Description: - apache2: Apache HTTP server Details: It was discovered that Apache HTTP Server incorrectly handled certain cookie headers in the HTTP/2 implementation. A remote attacker could possibly use this issue to cause Apache HTTP Server to consume excessive resources, resulting in a denial of service. Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 26.04 LTS apache2 2.4.66-2ubuntu2.2 Ubuntu 25.10 apache2 2.4.64-1ubuntu3.5 Ubuntu 24.04 LTS apache2 2.4.58-1ubuntu8.13 Ubuntu 22.04 LTS apache2 2.4.52-1ubuntu4.21 In general, a standard system update will make all the necessary changes. References: https://ubuntu.com/security/notices/USN-8384-1 CVE-2026-49975 Package Information: https://launchpad.net/ubuntu/+source/apache2/2.4.66-2ubun... https://launchpad.net/ubuntu/+source/apache2/2.4.64-1ubun... https://launchpad.net/ubuntu/+source/apache2/2.4.58-1ubun... https://launchpad.net/ubuntu/+source/apache2/2.4.52-1ubun...


Attachment: signature.asc (type=application/pgp-signature)

-----BEGIN PGP SIGNATURE----- iQIzBAABCgAdFiEE+8neBLO2Hp/ppPlOcpJm3tlzhgEFAmohqxEACgkQcpJm3tlz hgF9ChAAwyR5DH3daQAA0leBL0YVpMZ+ZDQBEhRO36YGJhewt8+CGwRF5RShSMnk iV3tQWyXDD26bTwtSJxnJwEmiPNMPgP7Bbt95xrKs12A3HLoHbr5D5iLnPvKyZ36 3L3scqthPr2sLWyfO7Lxw3i7qC/XJQuClWWoMHtqQcO0pMqR9UcHPmWV4tFXVhrF oAIT4PWj7h6q0ovf7WZnKjPLarmNnbnlBKeW2R9+xJHjPhXy8qOEQeyAMxy18Sq/ rAey2NI5VqOowKZrPUzZM1/Hq2GvxVxkT4wFQzXtu2yuTy0dwyV4jJnDcRg+GONZ xI89s8K3MneQsmo1a4eHDR3qja7VFDImfdByEt5Ke/Do18ogD13/cNc478aWH0Il ayihKPARgUprALWEvGPzoavQFwLiI0+3msYPKZKuGg+0M8BCUj8WGBY7hR9rGdNw 0gN8bm85orTY8DkZboHp0wbu+kDU2JMKxqBLLJ/mAQlOnvrnaLm02kytPgl42j6q +a2RpBaFA6L9plaW/dewAwIRvu/+5mSAFP9HWQdTLe9k/Ehvvoe4dwAGHXEdarZH ooDVxMBKktIh9UPJIYPNAqZ7hlwZbOXUIy21LpYcrRdAfrg3fMNEY//Fo/fYWnpE NUAGDVeI+HRmQYfqBKZYqw0GeoGOn+ji7v3njqMroYmqazum/QE= =O7r3 -----END PGP SIGNATURE-----


to post comments


Copyright © 2026, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds