PT-2024-4434 · Apache +10 · Apache Http Server +10

Orange_8361

·

Published

2024-07-01

·

Updated

2025-07-17

·

CVE-2024-38475

CVSS v2.0
9.4
VectorAV:N/AC:L/Au:N/C:C/I:C/A:N

**Name of the Vulnerable Software and Affected Versions:**

Apache HTTP Server versions 2.4.59 and earlier

Apache2 versions 2.4.41-4ubuntu3.23 (for Ubuntu)

Apache2 versions 2.4.61-1.1 (for openSUSE Tumbleweed)

Apache2 versions 2.4.61-alt1

**Description:**

A flaw exists in the `mod rewrite` module of Apache HTTP Server due to improper escaping of output. This allows an attacker to map URLs to filesystem locations that are permitted to be served by the server, even if those locations are not directly accessible via URL. This can result in code execution or source code disclosure. The vulnerability has been actively exploited in the wild, including attacks targeting SonicWall SMA devices.

**Recommendations:**

Upgrade Apache HTTP Server to version 2.4.60 or later.

Upgrade Apache2 to version 2.4.61-1~deb11u1 for the oldstable distribution (bullseye) or 2.4.61-1~deb12u1 for the stable distribution (bookworm).

Upgrade Apache2 to version 2.4.61-1.1 for openSUSE Tumbleweed.

Upgrade Apache2 to version 2.4.61-alt1.

Exploit

Fix

RCE

Improper Encoding or Escaping of Output

Weakness Enumeration

Related Identifiers

ALSA-2024:4720
ALSA-2024:4726
ALT-PU-2024-10005
ALT-PU-2024-10192
ALT-PU-2024-10223
BDU:2024-04936
BIT-APACHE-2024-38475
CESA-2024_4720
CVE-2024-38475
DSA-5729-1
ELSA-2024-4720
ELSA-2024-4726
ELSA-2024-4943
INFSA-2024_4720
INFSA-2024_4726
MGASA-2024-0258
OPENSUSE-SU-2024:14116-1
OPENSUSE-SU-2024_2597-1
RHSA-2024:4719
RHSA-2024:4720
RHSA-2024:4726
RHSA-2024:4820
RHSA-2024:4827
RHSA-2024:4830
RHSA-2024:4862
RHSA-2024:4863
RHSA-2024:4938
RHSA-2024:4943
RHSA-2024:5239
RHSA-2024_4720
RHSA-2024_4726
RLSA-2024:4726
RLSA-2024_4726
SUSE-SU-2024:2436-1
SUSE-SU-2024:2591-1
SUSE-SU-2024:2597-1
SUSE-SU-2024:2624-1
SUSE-SU-2024_2436-1
SUSE-SU-2024_2591-1
SUSE-SU-2024_2597-1
SUSE-SU-2024_2624-1
USN-6885-1
USN-6885-2
USN-6885-3
USN-6885-4

Affected Products

Alt Linux
Almalinux
Apache Http Server
Astra Linux
Centos
Linuxmint
Red Hat
Red Os
Rocky Linux
Suse
Ubuntu