Security
Headlines
HeadlinesLatestCVEs

Headline

Ubuntu Security Notice USN-6510-1

Ubuntu Security Notice 6510-1 - David Shoon discovered that the Apache HTTP Server mod_macro module incorrectly handled certain memory operations. A remote attacker could possibly use this issue to cause the server to crash, resulting in a denial of service.

Packet Storm
#vulnerability#mac#ubuntu#dos#apache
==========================================================================Ubuntu Security Notice USN-6510-1November 23, 2023apache2 vulnerability==========================================================================A security issue affects these releases of Ubuntu and its derivatives:- Ubuntu 18.04 LTS (Available with Ubuntu Pro)- Ubuntu 16.04 LTS (Available with Ubuntu Pro)- Ubuntu 14.04 LTS (Available with Ubuntu Pro)Summary:Apache HTTP Server could be made to crash if it received a speciallycrafted request.Software Description:- apache2: Apache HTTP serverDetails:David Shoon discovered that the Apache HTTP Server mod_macro moduleincorrectly handled certain memory operations. A remote attacker couldpossibly use this issue to cause the server to crash, resulting in a denialof service.Update instructions:The problem can be corrected by updating your system to the followingpackage versions:Ubuntu 18.04 LTS (Available with Ubuntu Pro):   apache2                         2.4.29-1ubuntu4.27+esm1Ubuntu 16.04 LTS (Available with Ubuntu Pro):   apache2                         2.4.18-2ubuntu3.17+esm11Ubuntu 14.04 LTS (Available with Ubuntu Pro):   apache2                         2.4.7-1ubuntu4.22+esm9In general, a standard system update will make all the necessary changes.References:   https://ubuntu.com/security/notices/USN-6510-1   CVE-2023-31122

Related news

Debian Security Advisory 5662-1

Debian Linux Security Advisory 5662-1 - Multiple vulnerabilities have been discovered in the Apache HTTP server, which may result in HTTP response splitting or denial of service.

Red Hat Security Advisory 2024-1317-03

Red Hat Security Advisory 2024-1317-03 - Red Hat JBoss Core Services Apache HTTP Server 2.4.57 Service Pack 3 is now available. Issues addressed include buffer overflow, cross site scripting, information leakage, out of bounds read, and use-after-free vulnerabilities.

Red Hat Security Advisory 2024-1316-03

Red Hat Security Advisory 2024-1316-03 - Red Hat JBoss Core Services Apache HTTP Server 2.4.57 Service Pack 3 is now available. Issues addressed include cross site scripting, information leakage, and out of bounds read vulnerabilities.

Ubuntu Security Notice USN-6506-1

Ubuntu Security Notice 6506-1 - David Shoon discovered that the Apache HTTP Server mod_macro module incorrectly handled certain memory operations. A remote attacker could possibly use this issue to cause the server to crash, resulting in a denial of service. Prof. Sven Dietrich, Isa Jafarov, Prof. Heejo Lee, and Choongin Lee discovered that the Apache HTTP Server incorrectly handled certain HTTP/2 connections. A remote attacker could possibly use this issue to cause the server to consume resources, leading to a denial of service. This issue only affected Ubuntu 23.04, and Ubuntu 23.10.

Packet Storm: Latest News

htmly 2.9.9 Cross Site Scripting