Bitnami package
apache
pkg:bitnami/apache
Vulnerabilities (82)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2020-1927 | — | >= 2.4.0, < 2.4.42 | 2.4.42 | Apr 1, 2020 | In Apache HTTP Server 2.4.0 to 2.4.41, redirects configured with mod_rewrite that were intended to be self-referential might be fooled by encoded newlines and redirect instead to an an unexpected URL within the request URL. | ||
| CVE-2020-1934 | — | >= 2.4.0, < 2.4.42 | 2.4.42 | Apr 1, 2020 | In Apache HTTP Server 2.4.0 to 2.4.41, mod_proxy_ftp may use uninitialized memory when proxying to a malicious FTP server. |
- CVE-2020-1927Apr 1, 2020affected >= 2.4.0, < 2.4.42fixed 2.4.42
In Apache HTTP Server 2.4.0 to 2.4.41, redirects configured with mod_rewrite that were intended to be self-referential might be fooled by encoded newlines and redirect instead to an an unexpected URL within the request URL.
- CVE-2020-1934Apr 1, 2020affected >= 2.4.0, < 2.4.42fixed 2.4.42
In Apache HTTP Server 2.4.0 to 2.4.41, mod_proxy_ftp may use uninitialized memory when proxying to a malicious FTP server.
Page 5 of 5