Alerts This Week
Warning Icon 1 916
Alerts This Week
Warning Icon 1 916

Fedora 42: 2025-7faa0bc6e5 moderate: mod_security DoS risk

fedora
Calendar Grey June 7, 2025
Dist Fedora Esm H88
Fedora 42 unveils mod_security 2.9.9 addressing a DoS vulnerability and integrating various bug resolutions. Update now for enhanced online protection.

This update includes mod_security version 2.9.9 which addresses CVE-2025-47947 and includes various bug fixes

Summary

ModSecurity is an open source intrusion detection and prevention engine

for web applications. It operates embedded into the web server, acting

as a powerful umbrella - shielding web applications from attacks.

Update Information:

This update includes mod_security version 2.9.9 which addresses CVE-2025-47947 and includes various bug fixes. See https://github.com/owasp-modsecurity/ModSecurity/releases/tag/v2.9.9 for more information on the changes in this release.

Change Log

* Thu May 29 2025 Joe Orton <jorton@redhat.com> - 2.9.9-1 - update to 2.9.9 (#2367908) - add bconds for yajl, ssdeep dependencies * Wed May 21 2025 Joe Orton <jorton@redhat.com> - 2.9.8-3 - updated warning fixes, synced with upstream PR 3372 * Fri May 9 2025 Joe Orton <jorton@redhat.com> - 2.9.8-2 - fix variety of compiler warnings * Fri May 9 2025 Joe Orton <jorton@redhat.com> - 2.9.8-1 - rebase to 2.9.8 * Fri May 9 2025 Joe Orton <jorton@redhat.com> - 2.9.7-10 - fix issues with piped logging (by Tomas Korbar, upstream #2823) * Sat Feb 1 2025 Björn Esser <besser82@fedoraproject.org> - 2.9.7-9 - Add explicit BR: libxcrypt-devel

References


[ 1 ] Bug #2367908 - CVE-2025-47947 mod_security: ModSecurity Has Possible DoS Vulnerability [fedora-42] https://bugzilla.redhat.com/show_bug.cgi?id=2367908

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-7faa0bc6e5' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

Name: mod_security
Product: Fedora 42
Version: 2.9.9
Release: 1.fc42
Summary: Security module for the Apache HTTP Server

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here