ELA-1719-1 apache2 security update

multiple vulnerabilities

2026-05-16
Packageapache2
Version2.4.59-1~deb10u7 (buster)
Related CVEs CVE-2026-24072 CVE-2026-28780 CVE-2026-29168 CVE-2026-29169 CVE-2026-33006 CVE-2026-33007 CVE-2026-33523 CVE-2026-33857 CVE-2026-34032 CVE-2026-34059


Multiple vulnerabilities have been discovered in the Apache HTTP server, which may result in remote code execution, privilege escalation, denial of service or information disclosure.



For Debian 10 buster, these problems have been fixed in version 2.4.59-1~deb10u7.

We recommend that you upgrade your apache2 packages.

Further information about Extended LTS security advisories can be found in the dedicated section of our website.