chiprook
← Security
SecurityOctober 3, 2026, 04:21

Apache fixes CVE-2026-63292 in httpd 2.4.69: stack overflow in mod_vhost_alias

The Apache Software Foundation released HTTP Server 2.4.69, patching CVE-2026-63292, a stack-based buffer overflow in mod_vhost_alias. All releases from 2.4.0 through 2.4.68 on every platform are affected, but exploitation requires the module loaded, a hostname format specifier in VirtualDocumentRoot, and LimitRequestFieldSize raised above 8192 bytes.

Apache fixes CVE-2026-63292 in httpd 2.4.69: stack overflow in mod_vhost_alias
#Apache
Read next
Security

CVE-2026-91843: Unauthenticated Stack Overflow in Check Point Servers

AI

Stack Overflow adds trust scores to feed AI agents enterprise knowledge

Security

CVE-2026-8452 in Citrix NetScaler: SAML parsing overflow leads to pre-auth RCE

Security

CTranslate2 CVE-2026-102566 & CVE-2026-102567: Heap Overflow in AI Model Loader