All errata/sisyphus/ALT-PU-2016-1385-2
ALT-PU-2016-1385-2

Package update apache2 in branch sisyphus

Version2.4.18-alt1
Published2026-02-04
Max severityMEDIUM
Severity:

Closed issues (2)

BDU:2015-10926
MEDIUM5.0

Уязвимость веб-сервера Apache HTTP Server, позволяющая нарушителю вызвать отказ в обслуживании

Published: 2015-08-07Modified: 2021-03-23
CVSS 2.0MEDIUM 5.0
CVSS:2.0/AV:N/AC:L/Au:N/C:N/I:N/A:P
References
CVE-2015-0228
MEDIUM5.0

The lua_websocket_read function in lua_request.c in the mod_lua module in the Apache HTTP Server through 2.4.12 allows remote attackers to cause a denial of service (child-process crash) by sending a crafted WebSocket Ping frame after a Lua script has called the wsupgrade function.

Published: 2015-03-08Modified: 2025-04-12
CVSS 2.0MEDIUM 5.0
CVSS:2.0/AV:N/AC:L/Au:N/C:N/I:N/A:P
References