Alpaquita LinuxStreamSecurity Advisory
Search Cve

CVE-2025-53020

Published: July 11, 2025Last modified: August 6, 2025

Description

Late Release of Memory after Effective Lifetime vulnerability in Apache HTTP Server. This issue affects Apache HTTP Server: from 2.4.17 up to 2.4.63. Users are recommended to upgrade to version 2.4.64, which fixes the issue.

Severity score breakdown

ParameterValue
Base score7.5
Attack VectorNETWORK
Attack complexityLOW
Privileges requiredNONE
User interactionNONE
ScopeUNCHANGED
ConfidentialityNONE
Integrity impactNONE
Availability impactHIGH
VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Status

ProductReleasePackageStatus
Alpaquita Linux23 LTSapache2Fixed (2.4.64-r0)
25 LTSapache2Fixed (2.4.65-r0)
Streamapache2Fixed (2.4.64-r0)

References

ON THIS PAGE