PT-2026-47331 · Apache+1 · Apache Http Server+1

CVE-2026-48913

·

Published

2026-04-27

·

Updated

2026-07-20

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Apache HTTP Server versions 2.4.55 through 2.4.67
Description A Use After Free issue exists in the mod http2 module of Apache HTTP Server, which occurs when file handles are already exhausted. Use After Free is a memory corruption flaw where a program continues to use a pointer after it has been freed.
Recommendations Update Apache HTTP Server to a version later than 2.4.67.

Fix

Use After Free

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2026:34355
BDU:2026-09753
BIT-APACHE-2026-48913
CVE-2026-48913
ECHO-1C44-DDC7-309F
OPENSUSE-SU-2026:21235-1
RHSA-2026:25042
RHSA-2026:34355
SUSE-SU-2026:22564-1
SUSE-SU-2026:2686-1
SUSE-SU-2026:2717-1
SUSE-SU-2026:2735-1
SUSE-SU-2026:2759-1
USN-8516-1
USN-8571-1

Affected Products

Apache Http Server
Linuxmint