PT-2025-30579 · Apache+3 · Apache Http Server+3

Published

2025-07-16

·

Updated

2025-11-18

·

CVE-2025-54090

CVSS v2.0

6.5

Medium

VectorAV:N/AC:L/Au:S/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Apache HTTP Server versions 2.4.64
Description A flaw exists in Apache HTTP Server where all "RewriteCond expr ..." tests evaluate as true.
Recommendations Upgrade to version 2.4.65.

Fix

Weakness Enumeration

Related Identifiers

ALT-PU-2025-9746
ALT-PU-2025-9920
ALT-PU-2025-9924
AZL-65654
BDU:2025-09493
BIT-APACHE-2025-54090
CVE-2025-54090
DLA-4270-1
MGASA-2025-0301
OPENSUSE-SU-2025:15384-1

Affected Products

Alt Linux
Apache Http Server
Debian
Red Os