HomeDefectsLIN1021-24956
Fixed

LIN1021-24956 : Security Advisory - apache2 - CVE-2026-24072

Created: May 5, 2026    Updated: Jun 8, 2026
Resolved Date: Jun 8, 2026
Found In Version: 10.21.20.2
Fix Version: 10.21.20.27
Severity: Standard
Applicable for: Wind River Linux LTS 21
Component/s: Userspace

Description

An escalation of privilege bug in various modules in Apache HTTP 2.4.66 and earlier allows local .htaccess authors to read files with the privileges of the httpd user.  Users are recommended to upgrade to version 2.4.67, which fixes this issue.

CVEs