mod_md-2.4.26-2.el9_8.1

エラータID: AXSA:2026-1444:01

リリース日: 
2026/08/04 Tuesday - 16:49
題名: 
mod_md-2.4.26-2.el9_8.1
影響のあるチャネル: 
MIRACLE LINUX 9 for x86_64
Severity: 
Moderate
Description: 

This module manages common properties of domains for one or more virtual hosts. Specifically it can use the ACME protocol to automate certificate provisioning. Certificates will be configured for managed domains and their virtual hosts automatically, including at renewal.

Security Fix(es):

* httpd: mod_md: unrestricted OCSP response leads to resource exhaustion (CVE-2026-29168)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

CVE-2026-29168
Allocation of Resources Without Limits or Throttling vulnerability in Apache HTTP Server's  mod_md via OCSP response data. This issue affects Apache HTTP Server: from 2.4.30 through 2.4.66. Users are recommended to upgrade to version 2.4.67, which fixes the issue.

解決策: 

Update packages.

追加情報: 

N/A

ダウンロード: 

SRPMS
  1. mod_md-2.4.26-2.el9_8.1.src.rpm
    MD5: 6eda2ccfbe2c8c1f06b638a14fd4dbcf
    SHA-256: ca9f938f1e86c56458bab475183b9001a55a9e2fd960ae2c6d34137117bd17c6
    Size: 852.66 kB

Asianux Server 9 for x86_64
  1. mod_md-2.4.26-2.el9_8.1.x86_64.rpm
    MD5: 9c58676af0bc0dd733e68a270e5796c9
    SHA-256: 0dfb809fcbd442cdbdcad0858a4f3a8f3ff8f2dc0b49f5a1b386a1cd7f1a1603
    Size: 255.04 kB