Stay Informed

Cybersecurity News

Home / News

Clear

Quick searches: Linux Windows Microsoft 365 AWS OVH VMware WordPress Fortinet Citrix VPN

478 result(s) for "Apache" — best match first.

What it means for your servers

The security stories that matter, explained by our team — with the concrete steps to take.

Latest headlines from security outlets

Collected every two hours from specialised publications — each link leads to the original article.

LinuxSecurity - Security Advisories
LinuxSecurity - Security Advisories Vulnerabilities

Fedora 36: subversion 2022-2af658b090

This update includes the latest stable release of _Apache Subversion_, version **1.14.2**. This update addresses two security issues, `CVE-2021-28544` and `CVE…

Linux Apache

LinuxSecurity - Security Advisories
LinuxSecurity - Security Advisories Vulnerabilities

SciLinux: SLSA-2022-1487-1 Important: java-1.8.0-openjdk on SL7.x x86_

OpenJDK: Defective secure validation in Apache Santuario (Libraries, 8278008) (CVE-2022-21476) * OpenJDK: Unbounded memory allocation when compiling crafted XP…

Linux Apache

LinuxSecurity - Security Advisories
LinuxSecurity - Security Advisories

RedHat: RHSA-2022-1390:01 Important: Red Hat JBoss Core Services Apac

Red Hat JBoss Core Services Apache HTTP Server 2.4.37 Service Pack 11 zip release for Red Hat Enterprise Linux 7, Red Hat Enterprise Linux 8, and Microsoft Win…

Linux Windows Apache

LinuxSecurity - Security Advisories
LinuxSecurity - Security Advisories

RedHat: RHSA-2022-1389:01 Important: Red Hat JBoss Core Services Apac

Updated packages that provide Red Hat JBoss Core Services Apache HTTP Server 2.4.37 Service Pack 11, fix several bugs, and add various enhancements are now ava…

Linux Apache

LinuxSecurity - Security Advisories
LinuxSecurity - Security Advisories Vulnerabilities

SciLinux: SLSA-2022-1440-1 Important: java-11-openjdk on SL7.x x86_

OpenJDK: Defective secure validation in Apache Santuario (Libraries, 8278008) (CVE-2022-21476) * OpenJDK: Unbounded memory allocation when compiling crafted XP…

Linux Apache

LinuxSecurity - Security Advisories
LinuxSecurity - Security Advisories

Debian LTS: DLA-2897-1: apr security upda

An issue has been found in apr, the Apache Portable Runtime Library. The issue is related to out of bounds memory access due to invalid date fields.

Linux Apache

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles

Open source isn't the security problem ' misusing it

Security is a process, not a product. We're going to be cleaning up Apache Log4j security problems for months to come, but the real problem isn't that it was o…

Apache

LinuxSecurity - Security Advisories
LinuxSecurity - Security Advisories Vulnerabilities

Mageia 2022-0002: log4j security upda

Apache Log4j2 is vulnerable to a remote code execution (RCE) attack where an attacker with permission to modify the logging configuration file can construct a …

Apache

The Hacker News
The Hacker News Vulnerabilities

CISA, FBI and NSA Publish Joint Advisory and Scanner for Log4j Vulnerabilities

Cybersecurity agencies from Australia, Canada, New Zealand, the U.K., and the U.S. on Wednesday released a joint advisory in response to widespread exploitatio…

Apache

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities

Log4j vulnerability now used to install Dridex banking malwa

Threat actors now exploit the critical Apache Log4j vulnerability named Log4Shell to infect vulnerable devices with the notorious Dridex banking trojan or Mete…

Apache

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities

Guide: How To Detect and Mitigate the Log4Shell Vulnerability (CVE-2021-44228 & CVE-2021-4504

A few days ago, a serious new vulnerability was identified in Apache log4j v2 and published as CVE-2021-44228 . We were one of the first security companies to …

Apache

LinuxSecurity - Security Advisories
LinuxSecurity - Security Advisories Vulnerabilities

Mageia 2021-0572: log4j security upda

Updated log4j packages fix security vulnerability: Apache Log4j2 versions 2.0-alpha1 through 2.16.0 did not protect from uncontrolled recursion from self-refer…

Apache

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities

Log4j Flaw Needs Immediate Remediati

After nearly two years of adopting major network and security changes wrought by COVID-19 and hybrid work, weary IT network and security teams didn't need anot…

Apache

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities

Log4j: Everything You Need to Know [Update

Security researchers have warned users that attackers are attempting to exploit a critical vulnerability in the Java logging library Apache Log4j. Log4j is a w…

Apache

Latest Hacking News
Latest Hacking News Vulnerabilities

Google’s OSS-Fuzz Tool Now Detects “Log4Shell” Via Jazzer

As the Apache Log4j vulnerability continues to wreak havoc, Google and Code Intelligence have jumped…Google’s OSS-Fuzz Tool Now Detects “Log4Shell” Via Jazzer…

Apache

LinuxSecurity - Security Advisories
LinuxSecurity - Security Advisories Vulnerabilities

Mageia 2021-0566: log4j security upda

It was found that the fix to address CVE-2021-44228 in Apache Log4j 2.15.0 was incomplete in certain non-default configurations. This could allows attackers wi…

Apache

The Hacker News
The Hacker News Breaches & leaks

Second Log4j Vulnerability (CVE-2021-45046) Discovered — New Patch Released

UPDATE— The severity score of CVE-2021-45046, originally classified as a DoS bug, has since been revised from 3.7 to 9.0, to reflect the fact that an attacker …

Apache

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities

Log4j: Everything You Need to Kn

Security researchers have warned users that attackers are attempting to exploit a critical vulnerability in the Java logging library Apache Log4j. Log4j is a w…

Apache

Latest Hacking News
Latest Hacking News Vulnerabilities

Critical 'Log4Shell' Zero-Day Vulnerability Wreaks Havoc Online

A highly critical vulnerability affecting the Apache Log4j library has potentially shaken the internet. This…Critical 'Log4Shell' Zero-Day Vulnerability Wreaks…

Apache

Latest Hacking News
Latest Hacking News Vulnerabilities

Critical ‘Log4Shell’ Zero-Day Vulnerability Wreaks Havoc Online

A highly critical vulnerability affecting the Apache Log4j library has potentially shaken the internet. This…Critical ‘Log4Shell’ Zero-Day Vulnerability Wreaks…

Apache

The Hacker News
The Hacker News Vulnerabilities

Extremely Critical Log4J Vulnerability Leaves Much of the Internet at Risk

The Apache Software Foundation has released fixes to contain anactivelyexploitedzero-day vulnerability affecting the widely-used Apache Log4j Java-based loggin…

Apache

LinuxSecurity - Security Advisories
LinuxSecurity - Security Advisories

Mageia 2021-0556: log4j security upda

Apache Log4j2

Apache

LinuxSecurity - Security Advisories
LinuxSecurity - Security Advisories Vulnerabilities

Debian: DSA-5010-1: libxml-security-java security upda

Apache Santuario - XML Security for Java is vulnerable to an issue where the "secureValidation" property is not passed correctly when creating a KeyInfo from a…

Linux Apache

LinuxSecurity - Security Advisories
LinuxSecurity - Security Advisories Breaches & leaks

Debian: DSA-5009-1: tomcat9 security upda

Apache Tomcat, the servlet and JSP engine, did not properly release an HTTP upgrade connection for WebSocket connections once the WebSocket connection was clos…

Linux Apache