Oracle Linux 9 Vulnerabilities Lead to Critical Security Advisories
ID: d8e7233d-f5ea-5b7c-bcb8-ee8173e217d2
STIX ID: report--d8e7233d-f5ea-5b7c-bcb8-ee8173e217d2
Feed Name: ThreatCluster
Threat Score
Oracle Linux 9 advisories report multiple critical Apache HTTP Server vulnerabilities — including a heap-based buffer overflow enabling arbitrary code execution (CVE-2026-28780), a NULL pointer dereference (CVE-2026-33007), memory disclosure (CVE-2026-34059), and a mod_http2 compression-bomb DoS (CVE-2026-49975). System administrators are urged to apply patches immediately to prevent potential service disruptions and unauthorized access.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
