Instructions to address httpd vulnerability
search cancel

Instructions to address httpd vulnerability

book

Article ID: 371322

calendar_today

Updated On:

Products

VMware Integrated OpenStack

Issue/Introduction

A security scan against the management plane vm's return one or more of these CVE's:

  • CVE-2021-34798
  • CVE-2021-36160
  • CVE-2021-40438

Environment

7.3

Cause

Photon has issued a security Advisory, PHSA-2021-3.0-0309

Resolution

The issue with httpd is addressed with httpd-2.4.48-3.

  1. Determine version of package that is installed
    rpm -qa httpd


  2. If the package version returned is less than httpd-2.4.48-3:
    tdnf update httpd