[CLSA-2026:1781628808] Fix of 7 CVEs
Type:
security
Severity:
Critical
Release date:
2026-06-16 16:53:51 UTC
Description:
* SECURITY UPDATE: fix use-after-free in mod_http2 when the server runs out of file handles, which left beam bucket callbacks referencing freed memory - debian/patches/CVE-2026-48913.patch: fix use-after-free in mod_http2 when the server runs out of file handles, which left beam bucket callbacks referencing freed memory - CVE-2026-48913
Updated packages:
  • apache2_2.4.59-1~deb10u1+tuxcare.els8_amd64.deb
    sha:e29d64bb58ce25e92cd607fc76ccb629c233f89b
  • apache2-bin_2.4.59-1~deb10u1+tuxcare.els8_amd64.deb
    sha:fba7e9e88205022df429f791b9ba81c85327e1e8
  • apache2-data_2.4.59-1~deb10u1+tuxcare.els8_all.deb
    sha:3ecf0e30fc64eec32139446b6a8598bafc6c5b6a
  • apache2-dev_2.4.59-1~deb10u1+tuxcare.els8_amd64.deb
    sha:1079984de0b8c051f11ca63700e6982dfba82794
  • apache2-doc_2.4.59-1~deb10u1+tuxcare.els8_all.deb
    sha:e8dc08073aa439bc2b65656ed8bf6ace604efd74
  • apache2-ssl-dev_2.4.59-1~deb10u1+tuxcare.els8_amd64.deb
    sha:6c2111edda0b7d4c4dcfdae4a09fb8f719aac524
  • apache2-suexec-custom_2.4.59-1~deb10u1+tuxcare.els8_amd64.deb
    sha:7422d2ae8f922de461c47841393b823809e4d3a9
  • apache2-suexec-pristine_2.4.59-1~deb10u1+tuxcare.els8_amd64.deb
    sha:b1a3d30c9363059529618e5dedf1534db0aa0332
  • apache2-utils_2.4.59-1~deb10u1+tuxcare.els8_amd64.deb
    sha:3d4deaab4348ce3a7e272ceb6877586a88803142
  • libapache2-mod-md_2.4.59-1~deb10u1+tuxcare.els8_amd64.deb
    sha:36d06fad725701e9e0e25e11b10dbc11a0f5ef79
  • libapache2-mod-proxy-uwsgi_2.4.59-1~deb10u1+tuxcare.els8_amd64.deb
    sha:8324cc967ab9c64a1b1273a95ec15f4fc96cf14f
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.