PT-2025-30579 · Apache+3 · Apache Http Server+3

CVE-2025-54090

·

Published

2025-07-16

·

Updated

2025-11-18

CVSS v2.0

6.5

Medium

VectorAV:N/AC:L/Au:S/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Apache HTTP Server versions 2.4.64
Description A flaw exists in Apache HTTP Server where all "RewriteCond expr ..." tests evaluate as true.
Recommendations Upgrade to version 2.4.65.

Exploit

Fix

DoS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2025-9746
ALT-PU-2025-9920
ALT-PU-2025-9924
AZL-65654
BDU:2025-09493
BIT-APACHE-2025-54090
CVE-2025-54090
DLA-4270-1
MGASA-2025-0301
OPENSUSE-SU-2025:15384-1

Affected Products

Alt Linux
Apache Http Server
Debian
Red Os