Alpaquita LinuxStreamSecurity Advisory
Search Cve

CVE-2025-54090

Published: July 24, 2025Last modified: August 6, 2025

Description

A bug in Apache HTTP Server 2.4.64 results in all "RewriteCond expr ..." tests evaluating as "true". Users are recommended to upgrade to version 2.4.65, which fixes the issue.

Severity score breakdown

ParameterValue
Base score6.3
Attack VectorNETWORK
Attack complexityLOW
Privileges requiredLOW
User interactionNONE
ScopeUNCHANGED
ConfidentialityLOW
Integrity impactLOW
Availability impactLOW
VectorCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L

Status

ProductReleasePackageStatus
Alpaquita Linux23 LTSapache2Fixed (2.4.65-r0)
25 LTSapache2Fixed (2.4.65-r0)
Streamapache2Fixed (2.4.65-r0)

References

ON THIS PAGE