PT-2026-47331 · Apache+1 · Apache Http Server+1
CVE-2026-48913
·
Published
2026-04-27
·
Updated
2026-07-20
CVSS v2.0
7.5
High
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
Apache HTTP Server versions 2.4.55 through 2.4.67
Description
A Use After Free issue exists in the
mod http2 module of Apache HTTP Server, which occurs when file handles are already exhausted. Use After Free is a memory corruption flaw where a program continues to use a pointer after it has been freed.Recommendations
Update Apache HTTP Server to a version later than 2.4.67.
Fix
Use After Free
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Apache Http Server
Linuxmint