VDB

RHSA-2002%3A243

RHSA-2002%3A243 PUBLISHED

Updated versions of the Apache HTTP server, PHP, and mod_ssl are now available which close possible buffer overflows in the Apache HTTP server benchmarking tool, fixes two cross-site scripting vulnerabilities in the error pages, and fix possible local privilege escalation. These updates also fix vulnerabilities in the PHP mail() function that allows script authors to bypass safe mode restrictions, and possibly allow remote attackers to insert arbitrary mail headers and content into messages.

Affected Products

VendorProductVersions
Red Hat Stronghold 3

Timeline

  • Nov 8, 2002 CVE Published
  • Nov 21, 2025 CVE Updated
  • Apr 7, 2026 Distribution Patch
  • Apr 7, 2026 Distribution Patch
  • Apr 7, 2026 Security Advisory
  • Apr 24, 2026 Security Advisory
  • Apr 24, 2026 Security Advisory
  • Apr 24, 2026 Security Advisory
  • Apr 24, 2026 Security Advisory
  • Apr 24, 2026 Security Advisory
  • Apr 24, 2026 Security Advisory
Open in Interactive Console →
$ Console Community · 100/wk Open console ›