{"id":"RHSA-2022:6753","summary":"Red Hat Security Advisory: httpd24-httpd security and bug fix update","modified":"2026-03-23T10:15:17.322728Z","published":"2024-09-13T23:20:13Z","upstream":["CVE-2021-33193","CVE-2021-34798","CVE-2021-36160","CVE-2021-39275","CVE-2021-44224","CVE-2022-22719","CVE-2022-22721","CVE-2022-23943","CVE-2022-26377","CVE-2022-28614","CVE-2022-28615","CVE-2022-29404","CVE-2022-30522","CVE-2022-30556","CVE-2022-31813"],"references":[{"type":"ADVISORY","url":"https://access.redhat.com/errata/RHSA-2022:6753"},{"type":"ARTICLE","url":"https://access.redhat.com/security/updates/classification/#moderate"},{"type":"ARTICLE","url":"https://access.redhat.com/articles/6975397"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1966728"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2005119"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2005124"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2005128"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2034672"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2064319"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2064320"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2064322"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2094997"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2095002"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2095006"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2095012"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2095015"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2095018"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2095020"},{"type":"ADVISORY","url":"https://security.access.redhat.com/data/csaf/v2/advisories/2022/rhsa-2022_6753.json"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2021-33193"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2021-33193"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2021-33193"},{"type":"ARTICLE","url":"https://portswigger.net/research/http2"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2021-34798"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2021-34798"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2021-34798"},{"type":"ARTICLE","url":"https://httpd.apache.org/security/vulnerabilities_24.html"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2021-36160"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2021-36160"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2021-36160"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2021-39275"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2021-39275"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2021-39275"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2021-44224"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2021-44224"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2021-44224"},{"type":"ARTICLE","url":"http://httpd.apache.org/security/vulnerabilities_24.html"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2022-22719"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2022-22719"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2022-22719"},{"type":"ARTICLE","url":"https://httpd.apache.org/security/vulnerabilities_24.html#CVE-2022-22719"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2022-22721"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2022-22721"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2022-22721"},{"type":"ARTICLE","url":"https://httpd.apache.org/security/vulnerabilities_24.html#CVE-2022-22721"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2022-23943"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2022-23943"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2022-23943"},{"type":"ARTICLE","url":"https://httpd.apache.org/security/vulnerabilities_24.html#CVE-2022-23943"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2022-26377"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2022-26377"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2022-26377"},{"type":"ARTICLE","url":"https://httpd.apache.org/security/vulnerabilities_24.html#CVE-2022-26377"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2022-28614"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2022-28614"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2022-28614"},{"type":"ARTICLE","url":"https://httpd.apache.org/security/vulnerabilities_24.html#CVE-2022-28614"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2022-28615"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2022-28615"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2022-28615"},{"type":"ARTICLE","url":"https://httpd.apache.org/security/vulnerabilities_24.html#CVE-2022-28615"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2022-29404"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2022-29404"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2022-29404"},{"type":"ARTICLE","url":"https://httpd.apache.org/security/vulnerabilities_24.html#CVE-2022-29404"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2022-30522"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2022-30522"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2022-30522"},{"type":"ARTICLE","url":"https://httpd.apache.org/security/vulnerabilities_24.html#CVE-2022-30522"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2022-30556"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2022-30556"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2022-30556"},{"type":"ARTICLE","url":"https://httpd.apache.org/security/vulnerabilities_24.html#CVE-2022-30556"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2022-31813"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2022-31813"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2022-31813"},{"type":"ARTICLE","url":"https://httpd.apache.org/security/vulnerabilities_24.html#CVE-2022-31813"}],"affected":[{"package":{"name":"httpd24-httpd","ecosystem":"Red Hat:rhel_software_collections:3::el7","purl":"pkg:rpm/redhat/httpd24-httpd"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:2.4.34-23.el7.5"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2022:6753.json"}},{"package":{"name":"httpd24-httpd-debuginfo","ecosystem":"Red Hat:rhel_software_collections:3::el7","purl":"pkg:rpm/redhat/httpd24-httpd-debuginfo"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:2.4.34-23.el7.5"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2022:6753.json"}},{"package":{"name":"httpd24-httpd-devel","ecosystem":"Red Hat:rhel_software_collections:3::el7","purl":"pkg:rpm/redhat/httpd24-httpd-devel"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:2.4.34-23.el7.5"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2022:6753.json"}},{"package":{"name":"httpd24-httpd-manual","ecosystem":"Red Hat:rhel_software_collections:3::el7","purl":"pkg:rpm/redhat/httpd24-httpd-manual"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:2.4.34-23.el7.5"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2022:6753.json"}},{"package":{"name":"httpd24-httpd-tools","ecosystem":"Red Hat:rhel_software_collections:3::el7","purl":"pkg:rpm/redhat/httpd24-httpd-tools"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:2.4.34-23.el7.5"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2022:6753.json"}},{"package":{"name":"httpd24-mod_ldap","ecosystem":"Red Hat:rhel_software_collections:3::el7","purl":"pkg:rpm/redhat/httpd24-mod_ldap"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:2.4.34-23.el7.5"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2022:6753.json"}},{"package":{"name":"httpd24-mod_proxy_html","ecosystem":"Red Hat:rhel_software_collections:3::el7","purl":"pkg:rpm/redhat/httpd24-mod_proxy_html"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1:2.4.34-23.el7.5"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2022:6753.json"}},{"package":{"name":"httpd24-mod_session","ecosystem":"Red Hat:rhel_software_collections:3::el7","purl":"pkg:rpm/redhat/httpd24-mod_session"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:2.4.34-23.el7.5"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2022:6753.json"}},{"package":{"name":"httpd24-mod_ssl","ecosystem":"Red Hat:rhel_software_collections:3::el7","purl":"pkg:rpm/redhat/httpd24-mod_ssl"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1:2.4.34-23.el7.5"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2022:6753.json"}}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H"}]}