Stay Informed

Cybersecurity News

Home / News

Clear

Quick searches: Linux Windows Microsoft 365 AWS OVH VMware WordPress Fortinet Citrix VPN

478 result(s) for "Apache" — best match first.

What it means for your servers

The security stories that matter, explained by our team — with the concrete steps to take.

Latest headlines from security outlets

Collected every two hours from specialised publications — each link leads to the original article.

LinuxSecurity - Security Advisories
LinuxSecurity - Security Advisories Vulnerabilities

Mageia 2021-0485: tomcat security upda

A vulnerability in the JNDI Realm of Apache Tomcat allows an attacker to authenticate using variations of a valid user name and/or to bypass some of the protec…

Apache

LinuxSecurity - Security Advisories
LinuxSecurity - Security Advisories Vulnerabilities

Fedora 34: httpd 2021-2a10bc68

This update addresses CVE-2021-42013. It was found that the fix for CVE-2021-41773 in Apache HTTP Server 2.4.50 was insufficient. An attacker could use a path …

Linux Apache

LinuxSecurity - Security Advisories
LinuxSecurity - Security Advisories

RedHat: RHSA-2021-3746:01 Important: Red Hat JBoss Core Services Apac

Updated packages that provide Red Hat JBoss Core Services Apache HTTP Server 2.4.37 Service Pack 9, and fix an important security issue, are now available for …

Linux Apache

LinuxSecurity - Security Advisories
LinuxSecurity - Security Advisories

RedHat: RHSA-2021-3745:01 Important: Red Hat JBoss Core Services Apac

Red Hat JBoss Core Services Apache HTTP Server 2.4.37 Service Pack 9 zip release for Red Hat Enterprise Linux 7, Red Hat Enterprise Linux 8, and Microsoft Wind…

Linux Windows Apache

LinuxSecurity - Security Advisories
LinuxSecurity - Security Advisories

Debian LTS: DLA-2768-1: uwsgi security upda

It was discovered that the uwsgi proxy module for Apache2 (mod_proxy_uwsgi) can read above the allocated memory when processing a request with a carefully craf…

Linux Apache

LinuxSecurity - Security Advisories
LinuxSecurity - Security Advisories Vulnerabilities

Debian LTS: DLA-2767-1: libxml-security-java security upda

Apache Santuario, XML Security for Java, is vulnerable to an issue where the "secureValidation" property is not passed correctly when creating a KeyInfo from a…

Linux Apache

LinuxSecurity - Security Advisories
LinuxSecurity - Security Advisories

Debian LTS: DLA-2764-1: tomcat8 security upda

Apache Tomcat did not properly validate incoming TLS packets. When Tomcat was configured to use NIO+OpenSSL or NIO2+OpenSSL for TLS, a specially crafted packet…

Linux Apache OpenSSL

LinuxSecurity - Security Advisories
LinuxSecurity - Security Advisories Vulnerabilities

Debian: DSA-4957-1: trafficserver security upda

Several vulnerabilities were discovered in Apache Traffic Server, a reverse and forward proxy server, which could result in denial of service, HTTP request smu…

Linux Apache

LinuxSecurity - Security Advisories
LinuxSecurity - Security Advisories

RedHat: RHSA-2021-2472:01 Important: Red Hat JBoss Core Services Apac

Updated packages that provide Red Hat JBoss Core Services Pack Apache Server 2.4.37 and fix several bugs, and add various enhancements are now available for Re…

Linux Apache

LinuxSecurity - Security Advisories
LinuxSecurity - Security Advisories Vulnerabilities

RedHat: RHSA-2021-2471:01 Important: Red Hat JBoss Core Services Apac

Red Hat JBoss Core Services Pack Apache Server 2.4.37 Service Pack 8 zip release for RHEL 7, RHEL 8 and Microsoft Windows is available. Red Hat Product Securit…

Linux Windows Apache

LinuxSecurity - Security Advisories
LinuxSecurity - Security Advisories Vulnerabilities

Mageia 2021-0184: pdfbox security upda

A carefully crafted PDF file can trigger an infinite loop while loading the file. This issue affects Apache PDFBox Apache PDFBox version 2.0.22 and prior 2.0.x…

Apache

LinuxSecurity - Security Advisories
LinuxSecurity - Security Advisories Vulnerabilities

Mageia 2021-0183: velocity security upda

An attacker that is able to modify Velocity templates may execute arbitrary Java code or run arbitrary system commands with the same privileges as the account …

Apache Docker

LinuxSecurity - Security Advisories
LinuxSecurity - Security Advisories Vulnerabilities

Mageia 2021-0182: spamassassin security upda

In Apache SpamAssassin before 3.4.5, malicious rule configuration (.cf) files can be configured to run system commands without any output or errors. With this,…

Apache

LinuxSecurity - Security Advisories
LinuxSecurity - Security Advisories Vulnerabilities

Mageia 2021-0173: ant security upda

Updated ant packages fix security vulnerability: As mitigation for CVE-2020-1945 Apache Ant 1.10.8 changed the permissions of temporary files it created so tha…

Apache

LinuxSecurity - Security Advisories
LinuxSecurity - Security Advisories Vulnerabilities

Fedora 34: spamassassin 2021-bf06dcff

Upstream version 3.4.5. See http://mail-archives.apache.org/mod_mbox/www- announce/202103.mbox/%3cd028983e-bad3-854b-ec9a-e8b0f922d627@apache.org%3e for detail…

Linux Apache

LinuxSecurity - Security Advisories
LinuxSecurity - Security Advisories

Debian LTS: DLA-2407-1: tomcat8 security upda

It was discovered that there was an issue in Apache Tomcat 8, the Java application server. An excessive number of concurrent streams could have resulted in use…

Linux Apache

LinuxSecurity - Security Advisories
LinuxSecurity - Security Advisories

Debian LTS: DLA-2400-1: activemq security upda

Apache ActiveMQ, a Java message broker, uses LocateRegistry.createRegistry() to create the JMX RMI registry and binds the server to the "jmxrmi" entry. It is p…

Linux Apache

LinuxSecurity - Security Advisories
LinuxSecurity - Security Advisories Vulnerabilities

Debian LTS: DLA-2362-1: uwsgi security upda

Apache HTTP Server versions before 2.4.32 uses src:uwsgi where a flaw was discovered. The uwsgi protocol does not let us serialize more than 16K of HTTP header…

Linux Apache

LinuxSecurity - Security Advisories
LinuxSecurity - Security Advisories Vulnerabilities

Fedora 32: httpd 2020-189a1e6c

This release includes the latest stable version of Apache **httpd**, version **2.4.46**. A security issue is addressed in this update: * **CVE-2020-11984** mod…

Linux Apache

LinuxSecurity - Security Advisories
LinuxSecurity - Security Advisories Vulnerabilities

Fedora 32: mod_http2 2020-8122a8da

This update includes the latest stable release of `mod_http2`, fixing various bugs. Two security vulnerabilities are addressed in this update: * **CVE-2020-119…

Linux Apache

LinuxSecurity - Security Advisories
LinuxSecurity - Security Advisories

Fedora 31: php 2020-8e36afc7

**PHP version 7.3.21** (06 Aug 2020) **Apache:** * Fixed bug php#79030 (Upgrade apache2handler's php_apache_sapi_get_request_time to return usec). (Herbert256)…

Linux Apache PHP

LinuxSecurity - Security Advisories
LinuxSecurity - Security Advisories

Fedora 32: php 2020-96124cc2

**PHP version 7.4.9** (06 Aug 2020) **Apache:** * Fixed bug php#79030 (Upgrade apache2handler's php_apache_sapi_get_request_time to return usec). (Herbert256) …

Linux Apache PHP

LinuxSecurity - Security Advisories
LinuxSecurity - Security Advisories Vulnerabilities

Mageia 2020-0277: tomcat security upda

Updated tomcat packages fix security vulnerability: When using Apache Tomcat versions 9.0.0.M1 to 9.0.34, if a) an attacker is able to control the contents and…

Apache

LinuxSecurity - Security Advisories
LinuxSecurity - Security Advisories Vulnerabilities

Debian: DSA-4710-1: trafficserver security upda

A vulnerability was discovered in Apache Traffic Server, a reverse and forward proxy server, which could result in denial of service via malformed HTTP/2 heade…

Linux Apache