CVE-2026-49975

Memory Allocation with Excessive Size Value vulnerability in Apache HTTP Server's mod_http leads to denial of service via malicious HTTP requests. This issue affects Apache HTTP Server: from 2.4.17 through 2.4.67.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:apache:http_server:*:*:*:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:11.0:*:*:*:*:*:*:*

History

No history.

Information

Published : 2026-06-08 16:16

Updated : 2026-08-19 12:18


NVD link : CVE-2026-49975

Mitre link : CVE-2026-49975

CVE.ORG link : CVE-2026-49975


JSON object : View

Products Affected

apache

  • http_server

debian

  • debian_linux
CWE
CWE-789

Memory Allocation with Excessive Size Value

CWE-409

Improper Handling of Highly Compressed Data (Data Amplification)