It was discovered that the Apache HTTP Server mod_dav module did not
properly handle specially crafted request headers. A remote attacker
could possibly use this issue to cause the process to crash, leading
to a denial of service. (CVE-2006-20001)
It was discovered that the Apache HTTP Server mod_proxy_ajp module did not
properly handle certain invalid Transfer-Encoding headers. A remote attacker
could possibly use this issue to perform an HTTP Request Smuggling attack.
(CVE-2022-36760)
More Stories
USN-7367-1: zvbi vulnerabilities
It was discovered that zvbi incorrectly handled memory when processing user input. An attacker could possibly use this issue to...
augeas-1.14.2-0.4.20250324git4dffa3d.fc40
FEDORA-2025-31036092ea Packages in this update: augeas-1.14.2-0.4.20250324git4dffa3d.fc40 Update description: CVE-2025-2588 Read More
augeas-1.14.2-0.4.20250324git4dffa3d.fc41
FEDORA-2025-117fe4c81f Packages in this update: augeas-1.14.2-0.4.20250324git4dffa3d.fc41 Update description: CVE-2025-2588 Read More
augeas-1.14.2-0.4.20250324git4dffa3d.fc42
FEDORA-2025-6b5c54bd05 Packages in this update: augeas-1.14.2-0.4.20250324git4dffa3d.fc42 Update description: CVE-2025-2588 Read More
USN-7365-1: NLTK vulnerabilities
It was discovered that NLTK contained a regex that is susceptible to catastrophic backtracking. An attacker could possibly use this...
uriparser-0.9.8-2.el8
FEDORA-EPEL-2025-1f39c6fc05 Packages in this update: uriparser-0.9.8-2.el8 Update description: Update to uriparser-0.9.8. Read More