Security News

Cybersecurity news aggregator

🔄
MEDIUM Updates Red Hat Errata

RHSA-2026:52393: Moderate: mod_md security update

  • What: Security update for mod_md
  • Impact: Red Hat Enterprise Linux 10.0 users need to apply the update to address security vulnerabilities
Read Full Article →

Red Hat Product Errata RHSA-2026:52393 - Security Advisory Issued: 2026-08-10 Updated: 2026-08-10 RHSA-2026:52393 - Security Advisory Overview Updated Packages Synopsis Moderate: mod_md security update Type/Severity Security Advisory: Moderate Red Hat Lightspeed patch analysis Identify and remediate systems affected by this advisory. View affected systems Topic An update for mod_md is now available for Red Hat Enterprise Linux 10.0 Extended Update Support. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. Description This module manages common properties of domains for one or more virtual hosts. Specifically it can use the ACME protocol to automate certificate provisioning. Certificates will be configured for managed domains and their virtual hosts automatically, including at renewal. Security Fix(es): httpd: mod_md: unrestricted OCSP response leads to resource exhaustion (CVE-2026-29168) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Solution For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 Affected Products Red Hat Enterprise Linux for x86_64 - Extended Update Support 10.0 x86_64 Red Hat Enterprise Linux for IBM z Systems - Extended Update Support 10.0 s390x Red Hat Enterprise Linux for Power, little endian - Extended Update Support 10.0 ppc64le Red Hat Enterprise Linux for ARM 64 - Extended Update Support 10.0 aarch64 Red Hat Enterprise Linux for ARM 64 - 4 years of updates 10.0 aarch64 Red Hat Enterprise Linux for IBM z Systems - 4 years of updates 10.0 s390x Red Hat Enterprise Linux for Power, little endian - 4 years of support 10.0 ppc64le Red Hat Enterprise Linux for x86_64 - 4 years of updates 10.0 x86_64 Fixes BZ - 2466753 - CVE-2026-29168 httpd: mod_md: unrestricted OCSP response leads to resource exhaustion CVEs CVE-2026-29168 References https://access.redhat.com/security/updates/classification/#moderate Note: More recent versions of these packages may be available. Click a package name for more details. Red Hat Enterprise Linux for x86_64 - Extended Update Support 10.0 SRPM mod_md-2.4.26-3.el10_0.2.src.rpm SHA-256: 6efeb722a6025e955366384beb7df3c55266ce9b2e794b3bbb597abe23d314ae x86_64 mod_md-2.4.26-3.el10_0.2.x86_64.rpm SHA-256: 434cc6426f4c9ba1ae3185f9b7645fa81799fda625b990e18736ca248563b78e mod_md-debuginfo-2.4.26-3.el10_0.2.x86_64.rpm SHA-256: a8ed87c14bcdd968dc424a1d66dac6abef049fb1c02d2b04488bb09a4441aef6 mod_md-debugsource-2.4.26-3.el10_0.2.x86_64.rpm SHA-256: f2b1f4da2de6ef7264c791496b92f0c7428d699df9633d816697c33d02ec5e39 Red Hat Enterprise Linux for IBM z Systems - Extended Update Support 10.0 SRPM mod_md-2.4.26-3.el10_0.2.src.rpm SHA-256: 6efeb722a6025e955366384beb7df3c55266ce9b2e794b3bbb597abe23d314ae s390x mod_md-2.4.26-3.el10_0.2.s390x.rpm SHA-256: 0334f88b4de9c92d84c9a5d5f5f93f6e2005e792b4096befabee8cc576b0c595 mod_md-debuginfo-2.4.26-3.el10_0.2.s390x.rpm SHA-256: 0b882df85a8cc075b84054f171b79a819c70bb4ea5238f5a4412cf7a4d3f46a4 mod_md-debugsource-2.4.26-3.el10_0.2.s390x.rpm SHA-256: fbb25cecba14b03cf634816f1f9f211214fb06e2c3c02bbfc14383bead31c646 Red Hat Enterprise Linux for Power, little endian - Extended Update Support 10.0 SRPM mod_md-2.4.26-3.el10_0.2.src.rpm SHA-256: 6efeb722a6025e955366384beb7df3c55266ce9b2e794b3bbb597abe23d314ae ppc64le mod_md-2.4.26-3.el10_0.2.ppc64le.rpm SHA-256: 1f1848185dbd78561c7c36ba47be7036a506dc535d43bb466feed3f6085bae65 mod_md-debuginfo-2.4.26-3.el10_0.2.ppc64le.rpm SHA-256: e488d949f302799db6d66d0a4eab511dc18666bb43d11626be19678d3213695d mod_md-debugsource-2.4.26-3.el10_0.2.ppc64le.rpm SHA-256: 70163380ccb180cf5ef1e69a0e56d1c6fc2aae2f3b49167a69d3dbbdbf301203 Red Hat Enterprise Linux for ARM 64 - Extended Update Support 10.0 SRPM mod_md-2.4.26-3.el10_0.2.src.rpm SHA-256: 6efeb722a6025e955366384beb7df3c55266ce9b2e794b3bbb597abe23d314ae aarch64 mod_md-2.4.26-3.el10_0.2.aarch64.rpm SHA-256: 01b896cc6ea114072c2dde23f5f44dd1106aadf076ecb9cf91713530da32b23f mod_md-debuginfo-2.4.26-3.el10_0.2.aarch64.rpm SHA-256: 180e77268656b92d684918a87ca03468fed4797f7116d5b26c390df234a53b0e mod_md-debugsource-2.4.26-3.el10_0.2.aarch64.rpm SHA-256: 070bd27f0d6c6f5c5c54e0939b4f6af4b9c5dd10303588deb353939feb7714bf Red Hat Enterprise Linux for ARM 64 - 4 years of updates 10.0 SRPM mod_md-2.4.26-3.el10_0.2.src.rpm SHA-256: 6efeb722a6025e955366384beb7df3c55266ce9b2e794b3bbb597abe23d314ae aarch64 mod_md-2.4.26-3.el10_0.2.aarch64.rpm SHA-256: 01b896cc6ea114072c2dde23f5f44dd1106aadf076ecb9cf91713530da32b23f mod_md-debuginfo-2.4.26-3.el10_0.2.aarch64.rpm SHA-256: 180e77268656b92d684918a87ca03468fed4797f7116d5b26c390df234a53b0e mod_md-debugsource-2.4.26-3.el10_0.2.aarch64.rpm SHA-256: 070bd27f0d6c6f5c5c54e0939b4f6af4b9c5dd10303588deb353939feb7714bf Red Hat Enterprise Linux for IBM z Systems - 4 years of updates 10.0 SRPM mod_md-2.4.26-3.el10_0.2.src.rpm SHA-256: 6efeb722a6025e955366384beb7df3c55266ce9b2e794b3bbb597abe23d314ae s390x mod_md-2.4.26-3.el10_0.2.s390x.rpm SHA-256: 0334f88b4de9c92d84c9a5d5f5f93f6e2005e792b4096befabee8cc576b0c595 mod_md-debuginfo-2.4.26-3.el10_0.2.s390x.rpm SHA-256: 0b882df85a8cc075b84054f171b79a819c70bb4ea5238f5a4412cf7a4d3f46a4 mod_md-debugsource-2.4.26-3.el10_0.2.s390x.rpm SHA-256: fbb25cecba14b03cf634816f1f9f211214fb06e2c3c02bbfc14383bead31c646 Red Hat Enterprise Linux for Power, little endian - 4 years of support 10.0 SRPM mod_md-2.4.26-3.el10_0.2.src.rpm SHA-256: 6efeb722a6025e955366384beb7df3c55266ce9b2e794b3bbb597abe23d314ae ppc64le mod_md-2.4.26-3.el10_0.2.ppc64le.rpm SHA-256: 1f1848185dbd78561c7c36ba47be7036a506dc535d43bb466feed3f6085bae65 mod_md-debuginfo-2.4.26-3.el10_0.2.ppc64le.rpm SHA-256: e488d949f302799db6d66d0a4eab511dc18666bb43d11626be19678d3213695d mod_md-debugsource-2.4.26-3.el10_0.2.ppc64le.rpm SHA-256: 70163380ccb180cf5ef1e69a0e56d1c6fc2aae2f3b49167a69d3dbbdbf301203 Red Hat Enterprise Linux for x86_64 - 4 years of updates 10.0 SRPM mod_md-2.4.26-3.el10_0.2.src.rpm SHA-256: 6efeb722a6025e955366384beb7df3c55266ce9b2e794b3bbb597abe23d314ae x86_64 mod_md-2.4.26-3.el10_0.2.x86_64.rpm SHA-256: 434cc6426f4c9ba1ae3185f9b7645fa81799fda625b990e18736ca248563b78e mod_md-debuginfo-2.4.26-3.el10_0.2.x86_64.rpm SHA-256: a8ed87c14bcdd968dc424a1d66dac6abef049fb1c02d2b04488bb09a4441aef6 mod_md-debugsource-2.4.26-3.el10_0.2.x86_64.rpm SHA-256: f2b1f4da2de6ef7264c791496b92f0c7428d699df9633d816697c33d02ec5e39 The Red Hat security contact is secalert@redhat.com . More contact details at https://access.redhat.com/security/team/contact/ .

Share this article