This issue affects Apache HTTP Server: through 2.4.58.
Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-3818-1 | apache2 security update |
Debian DSA |
DSA-5662-1 | apache2 security update |
EUVD |
EUVD-2023-42484 | Faulty input validation in the core of Apache allows malicious or exploitable backend/content generators to split HTTP responses. This issue affects Apache HTTP Server: through 2.4.58. |
Ubuntu USN |
USN-6729-1 | Apache HTTP Server vulnerabilities |
Ubuntu USN |
USN-6729-2 | Apache HTTP Server vulnerabilities |
Ubuntu USN |
USN-6729-3 | Apache HTTP Server vulnerabilities |
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Tue, 04 Nov 2025 22:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Mon, 30 Jun 2025 13:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Apple
Apple macos Broadcom Broadcom fabric Operating System Debian Debian debian Linux Fedoraproject Fedoraproject fedora Netapp Netapp ontap Netapp ontap Tools |
|
| CPEs | cpe:2.3:a:netapp:ontap:9:*:*:*:*:*:*:* cpe:2.3:a:netapp:ontap_tools:10:*:*:*:*:vmware_vsphere:*:* cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:* cpe:2.3:o:broadcom:fabric_operating_system:-:*:*:*:*:*:*:* cpe:2.3:o:debian:debian_linux:10.0:*:*:*:*:*:*:* cpe:2.3:o:fedoraproject:fedora:38:*:*:*:*:*:*:* cpe:2.3:o:fedoraproject:fedora:39:*:*:*:*:*:*:* cpe:2.3:o:fedoraproject:fedora:40:*:*:*:*:*:*:* |
|
| Vendors & Products |
Apple
Apple macos Broadcom Broadcom fabric Operating System Debian Debian debian Linux Fedoraproject Fedoraproject fedora Netapp Netapp ontap Netapp ontap Tools |
Wed, 13 Nov 2024 02:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:/a:redhat:enterprise_linux:9 |
Tue, 05 Nov 2024 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Apache
Apache http Server |
|
| Weaknesses | CWE-1284 | |
| CPEs | cpe:2.3:a:apache:http_server:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Apache
Apache http Server |
|
| Metrics |
cvssV3_1
|
cvssV3_1
|
Tue, 24 Sep 2024 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Redhat jboss Core Services
|
|
| CPEs | cpe:/a:redhat:jboss_core_services:1 cpe:/a:redhat:jboss_core_services:1::el7 cpe:/a:redhat:jboss_core_services:1::el8 |
|
| Vendors & Products |
Redhat jboss Core Services
|
Status: PUBLISHED
Assigner: apache
Published:
Updated: 2025-11-04T21:08:23.335Z
Reserved: 2023-07-24T17:51:18.042Z
Link: CVE-2023-38709
Updated: 2025-11-04T21:08:23.335Z
Status : Modified
Published: 2024-04-04T20:15:08.047
Modified: 2025-11-04T22:15:53.457
Link: CVE-2023-38709
OpenCVE Enrichment
No data.
Debian DLA
Debian DSA
EUVD
Ubuntu USN