Wind River Support Network

HomeDefectsLIN1021-16712
Acknowledged

LIN1021-16712 : Security Advisory - apache2 - CVE-2024-42516

Created: Jul 10, 2025    Updated: Aug 11, 2025
Found In Version: 10.21.20.1
Severity: Standard
Applicable for: Wind River Linux LTS 21
Component/s: Userspace

Description

HTTP response splitting in the core of Apache HTTP Server allows an attacker who can manipulate the Content-Type response headers of applications hosted or proxied by the server can split the HTTP response.EOL][EOL]This vulnerability was described as CVE-2023-38709 but the patch included in Apache HTTP Server 2.4.59 did not address the issue.[EOL][EOL]Users are recommended to upgrade to version 2.4.64, which fixes this issue.

CREATE(Triage):(User=admin) [CVE-2024-42516 (https://nvd.nist.gov/vuln/detail/CVE-2024-42516)
Live chat
Online