VDB

RHSA-2002%3A244

RHSA-2002%3A244 PUBLISHED

Updated versions of the Apache HTTP server, PHP, and mod_ssl are now available which close possible buffer overflows in the Apache HTTP server benchmarking tool, fix two cross-site scripting vulnerabilities in the error pages, and fix possible local privilege escalation. These updates also fix vulnerabilities in the PHP mail() function that allows script authors to bypass safe mode restrictions, and possibly allow remote attackers to insert arbitrary mail headers and content into messages.

Affected Products

VendorProductVersions
Red Hat Stronghold 4

Timeline

  • Nov 8, 2002 CVE Published
  • Nov 21, 2024 CVE Updated
  • Apr 7, 2026 Distribution Patch
  • Apr 7, 2026 Distribution Patch
  • Aug 7, 2026 Security Advisory
  • Aug 7, 2026 Security Advisory
  • Aug 7, 2026 Security Advisory
  • Aug 7, 2026 Security Advisory
  • Aug 7, 2026 Security Advisory
  • Aug 7, 2026 Security Advisory
  • Aug 7, 2026 Security Advisory
Open in Interactive Console →
$ Console Community · 100/wk Open console ›