Opened 7 months ago

Closed 7 months ago

Last modified 6 months ago

#21880 closed enhancement (fixed)

httpd-2.4.65

Reported by: Bruce Dubbs Owned by: Bruce Dubbs
Priority: elevated Milestone: 12.4
Component: BOOK Version: git
Severity: normal Keywords:
Cc:

Description

New point version.

Change History (4)

comment:1 by Joe Locash, 7 months ago

Priority: normalelevated
Fixed in Apache HTTP Server 2.4.65

moderate: Apache HTTP Server: 'RewriteCond expr' always 
evaluates to true in 2.4.64 (CVE-2025-54090)

A bug in Apache HTTP Server 2.4.64 results in all 
"RewriteCond expr ..." tests evaluating as "true".

Users are recommended to upgrade to version 2.4.65, which fixes the issue.
    Reported to security team   2025-07-16
    Update 2.4.65 released      2025-07-23
Last edited 7 months ago by Bruce Dubbs (previous) (diff)

comment:2 by Bruce Dubbs, 7 months ago

Owner: changed from blfs-book to Bruce Dubbs
Status: newassigned

comment:3 by Bruce Dubbs, 7 months ago

Resolution: fixed
Status: assignedclosed

Fixed at commits

4793b98ad5 Update to qemu-10.0.3.
0189941fd1 Update to httpd-2.4.65 (apache).
d9a63aa83e Update to unrar-7.1.9.
53d45f11fd Update to numpy-2.3.2.

comment:4 by Douglas R. Reno, 6 months ago

SA-12.3-082 issued

Note: See TracTickets for help on using tickets.