[CLSA-2026:1790171621] httpd: Fix of 3 CVEs
Type:
security
Severity:
None
Release date:
2026-09-23 13:53:49 UTC
Description:
- rebase to 2.4.6-99.0.9.el7_9.1 - replace the TuxCare backports for CVE-2024-47252, CVE-2025-49812 and CVE-2025-58098 (Patch326-328) with the vendor's own patches (Patch400-402), which carry the identical upstream changes - all other TuxCare CVE patches are unchanged: Patch300-330 and Patch1000-1014 remain declared and applied
Updated packages:
  • httpd-2.4.6-99.0.9.el7_9.1.tuxcare.els1.x86_64.rpm
    sha:cf5f0282b42d339020e765ce2dc42327de2657a8c953ea4853b6d76bdcbc36b7
  • httpd-devel-2.4.6-99.0.9.el7_9.1.tuxcare.els1.x86_64.rpm
    sha:314dd9b84093dc9aee81bda1ba74eb0ae6a9bd4ec7e8ce45941405dab922941d
  • httpd-manual-2.4.6-99.0.9.el7_9.1.tuxcare.els1.noarch.rpm
    sha:86908217fa3c42668ea25f9405b3bc5a172aee0b6d457c01d61ec12299b729e9
  • httpd-tools-2.4.6-99.0.9.el7_9.1.tuxcare.els1.x86_64.rpm
    sha:e366bb985cdf015f3e84894cd06c4d0b04d889f0c629538e6580fa8c9c95b84e
  • mod_ldap-2.4.6-99.0.9.el7_9.1.tuxcare.els1.x86_64.rpm
    sha:b154dd92680e6d8382f5873b801f315b5cdad45565249f476756aba44872d2d0
  • mod_proxy_html-2.4.6-99.0.9.el7_9.1.tuxcare.els1.x86_64.rpm
    sha:6da83302604cc6906ae61f7264fb0ba8c6cb372eacb7a0caa000d1977bd17800
  • mod_session-2.4.6-99.0.9.el7_9.1.tuxcare.els1.x86_64.rpm
    sha:327173713b885feff89ce68425e2fffae72718c78b0e88281c38547c97e143b4
  • mod_ssl-2.4.6-99.0.9.el7_9.1.tuxcare.els1.x86_64.rpm
    sha:6a64eb506b1be2e127a9fe16dd4dd2930cc7094912895d6e2a892c72344fc370
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.