Security Vulnerabilities fixed in Apache HTTP Server 2.4.54
Description
Apache HTTP Server 2.4.53 and earlier suffer memory corruption, out-of-bounds reads, denial of service, request smuggling, and header bypass due to unsafe handling of large inputs in mod_sed, mod_isapi, ap_rwrite/ap_rputs, ap_strcmp_match, r:parsebody, mod_proxy_ajp, r:wsread, and connection headers.
Affected Applications
HTTP Server
Version Updates
| Date | Version | Status | Detail |
|---|---|---|---|
| 2022-06-23 | 1.00321 |
New
|
HTTP Server |