CVE-2026-44185

Buffer Over-read vulnerability in Apache HTTP Server via outbound OCSP requests to an attacker controlled OCSP server This issue affects Apache HTTP Server: from 2.4.0 through 2.4.67. Users are recommended to upgrade to version 2.4.68, which fixes the issue.
Configurations

Configuration 1 (hide)

cpe:2.3:a:apache:http_server:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2026-06-08 16:16

Updated : 2026-09-14 13:18


NVD link : CVE-2026-44185

Mitre link : CVE-2026-44185

CVE.ORG link : CVE-2026-44185


JSON object : View

Products Affected

apache

  • http_server
CWE
CWE-126

Buffer Over-read

CWE-125

Out-of-bounds Read