ELSA-2024-4197

ELSA-2024-4197 - httpd:2.4/httpd security update

Type:SECURITY
Severity:MODERATE
Release Date:2024-07-01

Description


httpd
[2.4.37-65.0.1]
- Replace index.html with Oracle's index page oracle_index.html

[2.4.37-65]
- Resolves: RHEL-31857 - httpd:2.4/httpd: HTTP response
splitting (CVE-2023-38709)

mod_http2
mod_md


Related CVEs


CVE-2023-38709

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By AdvisoryChannel Label
Oracle Linux 8 (aarch64) httpd-2.4.37-65.0.1.module+el8.10.0+90356+f7b9d583.src.rpmbd1575a48b57313f7a1b2fb0aed304c9-ol8_aarch64_appstream
mod_http2-1.15.7-10.module+el8.10.0+90327+96b8ea28.src.rpmcfad3ce0620e49673cb9c5f948265264-ol8_aarch64_appstream
mod_md-2.0.8-8.module+el8.9.0+90011+2f9c6a23.src.rpm57baf2f70c9de0a1ab3a4a39fb97b4a0-ol8_aarch64_appstream
httpd-2.4.37-65.0.1.module+el8.10.0+90356+f7b9d583.aarch64.rpma5565824f87be3146933e56ab6099799-ol8_aarch64_appstream
httpd-devel-2.4.37-65.0.1.module+el8.10.0+90356+f7b9d583.aarch64.rpmc8059f448146cc274e26d2a82a0a9384-ol8_aarch64_appstream
httpd-filesystem-2.4.37-65.0.1.module+el8.10.0+90356+f7b9d583.noarch.rpm75974d6458b8f487289956384dab91eb-ol8_aarch64_appstream
httpd-manual-2.4.37-65.0.1.module+el8.10.0+90356+f7b9d583.noarch.rpm01de23684bd1c0b27dd2c5d585de6686-ol8_aarch64_appstream
httpd-tools-2.4.37-65.0.1.module+el8.10.0+90356+f7b9d583.aarch64.rpme2c1b450f074cdb91fa008c7c3f65625-ol8_aarch64_appstream
mod_http2-1.15.7-10.module+el8.10.0+90327+96b8ea28.aarch64.rpm7a4232cd2fee5cf07d4b6cfd120ae5e8-ol8_aarch64_appstream
mod_ldap-2.4.37-65.0.1.module+el8.10.0+90356+f7b9d583.aarch64.rpm053bf95ea6d67a40123e6393f533ac98-ol8_aarch64_appstream
mod_md-2.0.8-8.module+el8.9.0+90011+2f9c6a23.aarch64.rpme0cdd2c7bbe8ba7cf3614b973dd7eb66-ol8_aarch64_appstream
mod_proxy_html-2.4.37-65.0.1.module+el8.10.0+90356+f7b9d583.aarch64.rpm6b88bdc6058bf88bf160250e38e01925-ol8_aarch64_appstream
mod_session-2.4.37-65.0.1.module+el8.10.0+90356+f7b9d583.aarch64.rpmaff957d88e362637cdb0241c58a29956-ol8_aarch64_appstream
mod_ssl-2.4.37-65.0.1.module+el8.10.0+90356+f7b9d583.aarch64.rpm8bc971c066f225841838f30644aeab3e-ol8_aarch64_appstream
Oracle Linux 8 (x86_64) httpd-2.4.37-65.0.1.module+el8.10.0+90356+f7b9d583.src.rpmbd1575a48b57313f7a1b2fb0aed304c9-ol8_x86_64_appstream
mod_http2-1.15.7-10.module+el8.10.0+90327+96b8ea28.src.rpmcfad3ce0620e49673cb9c5f948265264-ol8_x86_64_appstream
mod_md-2.0.8-8.module+el8.9.0+90011+2f9c6a23.src.rpm57baf2f70c9de0a1ab3a4a39fb97b4a0-ol8_x86_64_appstream
httpd-2.4.37-65.0.1.module+el8.10.0+90356+f7b9d583.x86_64.rpmf89e164f3e042429cf31c1dae49e6404-ol8_x86_64_appstream
httpd-devel-2.4.37-65.0.1.module+el8.10.0+90356+f7b9d583.x86_64.rpmdc99969a4925b5c543cb2a0113a3b834-ol8_x86_64_appstream
httpd-filesystem-2.4.37-65.0.1.module+el8.10.0+90356+f7b9d583.noarch.rpm75974d6458b8f487289956384dab91eb-ol8_x86_64_appstream
httpd-manual-2.4.37-65.0.1.module+el8.10.0+90356+f7b9d583.noarch.rpm01de23684bd1c0b27dd2c5d585de6686-ol8_x86_64_appstream
httpd-tools-2.4.37-65.0.1.module+el8.10.0+90356+f7b9d583.x86_64.rpm6134b2e1fa77c6d142d8033e57d0b9e9-ol8_x86_64_appstream
mod_http2-1.15.7-10.module+el8.10.0+90327+96b8ea28.x86_64.rpmad14667bc0eddafff0e6adcad3f51b6b-ol8_x86_64_appstream
mod_ldap-2.4.37-65.0.1.module+el8.10.0+90356+f7b9d583.x86_64.rpm75a87c4bf4f4d5ac505d2eae4645b4d6-ol8_x86_64_appstream
mod_md-2.0.8-8.module+el8.9.0+90011+2f9c6a23.x86_64.rpm50f77dc288425f1cdee5d05760c7dccb-ol8_x86_64_appstream
mod_proxy_html-2.4.37-65.0.1.module+el8.10.0+90356+f7b9d583.x86_64.rpmcdf40898ebc73bb8d6a647c39ed795fc-ol8_x86_64_appstream
mod_session-2.4.37-65.0.1.module+el8.10.0+90356+f7b9d583.x86_64.rpm0e16c1f785a93e3d177cd3522c2eeb75-ol8_x86_64_appstream
mod_ssl-2.4.37-65.0.1.module+el8.10.0+90356+f7b9d583.x86_64.rpm42d284a0310e4718601171d90dc41a73-ol8_x86_64_appstream



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete