File _patchinfo of Package patchinfo.33761
<patchinfo incident="33761"> <issue tracker="cve" id="2024-27316"/> <issue tracker="cve" id="2024-24795"/> <issue tracker="cve" id="2023-38709"/> <issue tracker="bnc" id="1222330">VUL-0: CVE-2023-38709: apache2: HTTP response splitting</issue> <issue tracker="bnc" id="1222332">VUL-0: CVE-2024-24795: apache2: HTTP Response Splitting in multiple modules</issue> <issue tracker="bnc" id="1221401">VUL-0: CVE-2024-27316: apache2: VU#421644: HTTP/2 CONTINUATION frames can be utilized for DoS attacks</issue> <packager>pgajdos</packager> <rating>important</rating> <category>security</category> <summary>Security update for apache2</summary> <description>This update for apache2 fixes the following issues: - CVE-2023-38709: Fixed faulty input validation inside the HTTP response splitting code (bsc#1222330). - CVE-2024-24795: Fixed handling of malicious HTTP splitting response headers in multiple modules (bsc#1222332). - CVE-2024-27316: Fixed HTTP/2 CONTINUATION frames that could have been utilized for DoS attacks (bsc#1221401). </description> </patchinfo>