HomeDefectsLIN1021-24956
Acknowledged

LIN1021-24956 : Security Advisory - apache2 - CVE-2026-24072

Created: May 5, 2026    Updated: May 14, 2026
Found In Version: 10.21.20.2
Severity: Standard
Applicable for: Wind River Linux LTS 21
Component/s: Userspace

Description

An escalation of privilege bug in various modules in Apache HTTP 2.4.66 and earlier allows local .htaccess authors to read files with the privileges of the httpd user.  Users are recommended to upgrade to version 2.4.67, which fixes this issue.