{
  "schema_version": "1.7.0",
  "id": "RHSA-2026:56868",
  "related": [],
  "upstream": [
    "CVE-2024-42516",
    "CVE-2024-43204",
    "CVE-2026-24072",
    "CVE-2026-29167",
    "CVE-2026-29170",
    "CVE-2026-34355",
    "CVE-2026-34356",
    "CVE-2026-42535",
    "CVE-2026-42536",
    "CVE-2026-43951",
    "CVE-2026-44119",
    "CVE-2026-44185",
    "CVE-2026-44186",
    "CVE-2026-44631",
    "CVE-2026-48913"
  ],
  "published": "2026-08-27T10:15:14Z",
  "modified": "2026-08-27T10:15:14Z",
  "summary": "Red Hat Security Advisory: Red Hat JBoss Core Services Apache HTTP Server 2.4.62 SP5 security update",
  "severity": [
    {
      "type": "CVSS_V3",
      "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:H/A:H"
    }
  ],
  "affected": [
    {
      "package": {
        "name": "jbcs-httpd24-httpd",
        "ecosystem": "Red Hat:jboss_core_services:1::el8",
        "purl": "pkg:rpm/redhat/jbcs-httpd24-httpd"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:2.4.62-16.el8jbcs"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "jbcs-httpd24-httpd-debuginfo",
        "ecosystem": "Red Hat:jboss_core_services:1::el8",
        "purl": "pkg:rpm/redhat/jbcs-httpd24-httpd-debuginfo"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:2.4.62-16.el8jbcs"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "jbcs-httpd24-httpd-devel",
        "ecosystem": "Red Hat:jboss_core_services:1::el8",
        "purl": "pkg:rpm/redhat/jbcs-httpd24-httpd-devel"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:2.4.62-16.el8jbcs"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "jbcs-httpd24-httpd-manual",
        "ecosystem": "Red Hat:jboss_core_services:1::el8",
        "purl": "pkg:rpm/redhat/jbcs-httpd24-httpd-manual"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:2.4.62-16.el8jbcs"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "jbcs-httpd24-httpd-selinux",
        "ecosystem": "Red Hat:jboss_core_services:1::el8",
        "purl": "pkg:rpm/redhat/jbcs-httpd24-httpd-selinux"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:2.4.62-16.el8jbcs"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "jbcs-httpd24-httpd-tools",
        "ecosystem": "Red Hat:jboss_core_services:1::el8",
        "purl": "pkg:rpm/redhat/jbcs-httpd24-httpd-tools"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:2.4.62-16.el8jbcs"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "jbcs-httpd24-httpd-tools-debuginfo",
        "ecosystem": "Red Hat:jboss_core_services:1::el8",
        "purl": "pkg:rpm/redhat/jbcs-httpd24-httpd-tools-debuginfo"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:2.4.62-16.el8jbcs"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "jbcs-httpd24-mod_http2",
        "ecosystem": "Red Hat:jboss_core_services:1::el8",
        "purl": "pkg:rpm/redhat/jbcs-httpd24-mod_http2"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:2.0.29-13.el8jbcs"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "jbcs-httpd24-mod_http2-debuginfo",
        "ecosystem": "Red Hat:jboss_core_services:1::el8",
        "purl": "pkg:rpm/redhat/jbcs-httpd24-mod_http2-debuginfo"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:2.0.29-13.el8jbcs"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "jbcs-httpd24-mod_jk",
        "ecosystem": "Red Hat:jboss_core_services:1::el8",
        "purl": "pkg:rpm/redhat/jbcs-httpd24-mod_jk"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:1.2.50-17.redhat_1.el8jbcs"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "jbcs-httpd24-mod_jk-ap24",
        "ecosystem": "Red Hat:jboss_core_services:1::el8",
        "purl": "pkg:rpm/redhat/jbcs-httpd24-mod_jk-ap24"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:1.2.50-17.redhat_1.el8jbcs"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "jbcs-httpd24-mod_jk-ap24-debuginfo",
        "ecosystem": "Red Hat:jboss_core_services:1::el8",
        "purl": "pkg:rpm/redhat/jbcs-httpd24-mod_jk-ap24-debuginfo"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:1.2.50-17.redhat_1.el8jbcs"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "jbcs-httpd24-mod_ldap",
        "ecosystem": "Red Hat:jboss_core_services:1::el8",
        "purl": "pkg:rpm/redhat/jbcs-httpd24-mod_ldap"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:2.4.62-16.el8jbcs"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "jbcs-httpd24-mod_ldap-debuginfo",
        "ecosystem": "Red Hat:jboss_core_services:1::el8",
        "purl": "pkg:rpm/redhat/jbcs-httpd24-mod_ldap-debuginfo"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:2.4.62-16.el8jbcs"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "jbcs-httpd24-mod_md",
        "ecosystem": "Red Hat:jboss_core_services:1::el8",
        "purl": "pkg:rpm/redhat/jbcs-httpd24-mod_md"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "1:2.4.28-19.el8jbcs"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "jbcs-httpd24-mod_md-debuginfo",
        "ecosystem": "Red Hat:jboss_core_services:1::el8",
        "purl": "pkg:rpm/redhat/jbcs-httpd24-mod_md-debuginfo"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "1:2.4.28-19.el8jbcs"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "jbcs-httpd24-mod_proxy_cluster",
        "ecosystem": "Red Hat:jboss_core_services:1::el8",
        "purl": "pkg:rpm/redhat/jbcs-httpd24-mod_proxy_cluster"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:1.3.22-12.el8jbcs"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "jbcs-httpd24-mod_proxy_cluster-debuginfo",
        "ecosystem": "Red Hat:jboss_core_services:1::el8",
        "purl": "pkg:rpm/redhat/jbcs-httpd24-mod_proxy_cluster-debuginfo"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:1.3.22-12.el8jbcs"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "jbcs-httpd24-mod_proxy_html",
        "ecosystem": "Red Hat:jboss_core_services:1::el8",
        "purl": "pkg:rpm/redhat/jbcs-httpd24-mod_proxy_html"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "1:2.4.62-16.el8jbcs"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "jbcs-httpd24-mod_proxy_html-debuginfo",
        "ecosystem": "Red Hat:jboss_core_services:1::el8",
        "purl": "pkg:rpm/redhat/jbcs-httpd24-mod_proxy_html-debuginfo"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "1:2.4.62-16.el8jbcs"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "jbcs-httpd24-mod_security",
        "ecosystem": "Red Hat:jboss_core_services:1::el8",
        "purl": "pkg:rpm/redhat/jbcs-httpd24-mod_security"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:2.9.6-19.el8jbcs"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "jbcs-httpd24-mod_security-debuginfo",
        "ecosystem": "Red Hat:jboss_core_services:1::el8",
        "purl": "pkg:rpm/redhat/jbcs-httpd24-mod_security-debuginfo"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:2.9.6-19.el8jbcs"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "jbcs-httpd24-mod_session",
        "ecosystem": "Red Hat:jboss_core_services:1::el8",
        "purl": "pkg:rpm/redhat/jbcs-httpd24-mod_session"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:2.4.62-16.el8jbcs"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "jbcs-httpd24-mod_session-debuginfo",
        "ecosystem": "Red Hat:jboss_core_services:1::el8",
        "purl": "pkg:rpm/redhat/jbcs-httpd24-mod_session-debuginfo"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:2.4.62-16.el8jbcs"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "jbcs-httpd24-mod_ssl",
        "ecosystem": "Red Hat:jboss_core_services:1::el8",
        "purl": "pkg:rpm/redhat/jbcs-httpd24-mod_ssl"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "1:2.4.62-16.el8jbcs"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "jbcs-httpd24-mod_ssl-debuginfo",
        "ecosystem": "Red Hat:jboss_core_services:1::el8",
        "purl": "pkg:rpm/redhat/jbcs-httpd24-mod_ssl-debuginfo"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "1:2.4.62-16.el8jbcs"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    }
  ],
  "references": [
    {
      "type": "ADVISORY",
      "url": "https://access.redhat.com/errata/RHSA-2026:56868"
    },
    {
      "type": "ARTICLE",
      "url": "https://access.redhat.com/security/updates/classification/#important"
    },
    {
      "type": "ARTICLE",
      "url": "https://docs.redhat.com/en/documentation/red_hat_jboss_core_services/2.4.62/html/red_hat_jboss_core_services_apache_http_server_2.4.62_service_pack_5_release_notes/index"
    },
    {
      "type": "REPORT",
      "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2374549"
    },
    {
      "type": "REPORT",
      "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2374553"
    },
    {
      "type": "REPORT",
      "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2464941"
    },
    {
      "type": "REPORT",
      "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2486394"
    },
    {
      "type": "REPORT",
      "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2486395"
    },
    {
      "type": "REPORT",
      "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2486397"
    },
    {
      "type": "REPORT",
      "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2486399"
    },
    {
      "type": "REPORT",
      "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2486402"
    },
    {
      "type": "REPORT",
      "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2486405"
    },
    {
      "type": "REPORT",
      "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2486406"
    },
    {
      "type": "REPORT",
      "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2486411"
    },
    {
      "type": "REPORT",
      "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2486414"
    },
    {
      "type": "REPORT",
      "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2486415"
    },
    {
      "type": "REPORT",
      "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2486416"
    },
    {
      "type": "REPORT",
      "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2486419"
    },
    {
      "type": "ARTICLE",
      "url": "https://issues.redhat.com/browse/JBCS-2284"
    },
    {
      "type": "ARTICLE",
      "url": "https://issues.redhat.com/browse/JBCS-2285"
    },
    {
      "type": "ARTICLE",
      "url": "https://issues.redhat.com/browse/JBCS-2286"
    },
    {
      "type": "ARTICLE",
      "url": "https://issues.redhat.com/browse/JBCS-2287"
    },
    {
      "type": "ADVISORY",
      "url": "https://security.access.redhat.com/data/csaf/v2/advisories/2026/rhsa-2026_56868.json"
    },
    {
      "type": "REPORT",
      "url": "https://access.redhat.com/security/cve/CVE-2024-42516"
    },
    {
      "type": "ADVISORY",
      "url": "https://www.cve.org/CVERecord?id=CVE-2024-42516"
    },
    {
      "type": "ADVISORY",
      "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-42516"
    },
    {
      "type": "ARTICLE",
      "url": "https://httpd.apache.org/security/vulnerabilities_24.html"
    },
    {
      "type": "REPORT",
      "url": "https://access.redhat.com/security/cve/CVE-2024-43204"
    },
    {
      "type": "ADVISORY",
      "url": "https://www.cve.org/CVERecord?id=CVE-2024-43204"
    },
    {
      "type": "ADVISORY",
      "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-43204"
    },
    {
      "type": "REPORT",
      "url": "https://access.redhat.com/security/cve/CVE-2026-24072"
    },
    {
      "type": "ADVISORY",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-24072"
    },
    {
      "type": "ADVISORY",
      "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-24072"
    },
    {
      "type": "REPORT",
      "url": "https://access.redhat.com/security/cve/CVE-2026-29167"
    },
    {
      "type": "ADVISORY",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-29167"
    },
    {
      "type": "ADVISORY",
      "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-29167"
    },
    {
      "type": "REPORT",
      "url": "https://access.redhat.com/security/cve/CVE-2026-29170"
    },
    {
      "type": "ADVISORY",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-29170"
    },
    {
      "type": "ADVISORY",
      "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-29170"
    },
    {
      "type": "REPORT",
      "url": "https://access.redhat.com/security/cve/CVE-2026-34355"
    },
    {
      "type": "ADVISORY",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-34355"
    },
    {
      "type": "ADVISORY",
      "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-34355"
    },
    {
      "type": "REPORT",
      "url": "https://access.redhat.com/security/cve/CVE-2026-34356"
    },
    {
      "type": "ADVISORY",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-34356"
    },
    {
      "type": "ADVISORY",
      "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-34356"
    },
    {
      "type": "REPORT",
      "url": "https://access.redhat.com/security/cve/CVE-2026-42535"
    },
    {
      "type": "ADVISORY",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-42535"
    },
    {
      "type": "ADVISORY",
      "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-42535"
    },
    {
      "type": "REPORT",
      "url": "https://access.redhat.com/security/cve/CVE-2026-42536"
    },
    {
      "type": "ADVISORY",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-42536"
    },
    {
      "type": "ADVISORY",
      "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-42536"
    },
    {
      "type": "REPORT",
      "url": "https://access.redhat.com/security/cve/CVE-2026-43951"
    },
    {
      "type": "ADVISORY",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-43951"
    },
    {
      "type": "ADVISORY",
      "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-43951"
    },
    {
      "type": "REPORT",
      "url": "https://access.redhat.com/security/cve/CVE-2026-44119"
    },
    {
      "type": "ADVISORY",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-44119"
    },
    {
      "type": "ADVISORY",
      "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-44119"
    },
    {
      "type": "REPORT",
      "url": "https://access.redhat.com/security/cve/CVE-2026-44185"
    },
    {
      "type": "ADVISORY",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-44185"
    },
    {
      "type": "ADVISORY",
      "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-44185"
    },
    {
      "type": "REPORT",
      "url": "https://access.redhat.com/security/cve/CVE-2026-44186"
    },
    {
      "type": "ADVISORY",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-44186"
    },
    {
      "type": "ADVISORY",
      "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-44186"
    },
    {
      "type": "REPORT",
      "url": "https://access.redhat.com/security/cve/CVE-2026-44631"
    },
    {
      "type": "ADVISORY",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-44631"
    },
    {
      "type": "ADVISORY",
      "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-44631"
    },
    {
      "type": "REPORT",
      "url": "https://access.redhat.com/security/cve/CVE-2026-48913"
    },
    {
      "type": "ADVISORY",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48913"
    },
    {
      "type": "ADVISORY",
      "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-48913"
    }
  ]
}