Fedora Account System
Red Hat Associate
Red Hat Customer
Improper Privilege Management vulnerability in Apache HTTP Server 2.4.67 and earlier allows local .htaccess authors to read files with the privileges of the httpd user. This issue affects Apache HTTP Server: from through 2.4.67. Users are recommended to upgrade to version 2.4.68, which fixes the issue.
This issue has been addressed in the following products: Red Hat Enterprise Linux 9 Via RHSA-2026:41906 https://access.redhat.com/errata/RHSA-2026:41906