{"cve": "CVE-2023-38709", "updated": null, "url": null, "affected": [{"ecosystem": "Debian:11", "package": "apache2", "affected": null, "fixed": "2.4.59-1~deb11u1", "status": "fixed", "ref": "https://osv.dev/vulnerability/DEBIAN-CVE-2023-38709"}, {"ecosystem": "Debian:12", "package": "apache2", "affected": null, "fixed": "2.4.59-1~deb12u1", "status": "fixed", "ref": "https://osv.dev/vulnerability/DEBIAN-CVE-2023-38709"}, {"ecosystem": "Debian:13", "package": "apache2", "affected": null, "fixed": "2.4.59-1", "status": "fixed", "ref": "https://osv.dev/vulnerability/DEBIAN-CVE-2023-38709"}, {"ecosystem": "Debian:14", "package": "apache2", "affected": null, "fixed": "2.4.59-1", "status": "fixed", "ref": "https://osv.dev/vulnerability/DEBIAN-CVE-2023-38709"}, {"ecosystem": "Debian:10", "package": "apache2", "affected": null, "fixed": "2.4.59-1~deb10u1", "status": "fixed", "ref": "https://osv.dev/vulnerability/DLA-3818-1"}, {"ecosystem": "Debian:11", "package": "apache2", "affected": null, "fixed": "2.4.59-1~deb11u1", "status": "fixed", "ref": "https://osv.dev/vulnerability/DSA-5662-1"}, {"ecosystem": "Debian:12", "package": "apache2", "affected": null, "fixed": "2.4.59-1~deb12u1", "status": "fixed", "ref": "https://osv.dev/vulnerability/DSA-5662-1"}, {"ecosystem": "Ubuntu:Pro:14.04:LTS", "package": "apache2", "affected": null, "fixed": "2.4.7-1ubuntu4.22+esm12", "status": "fixed", "ref": "https://osv.dev/vulnerability/UBUNTU-CVE-2023-38709"}, {"ecosystem": "Ubuntu:Pro:16.04:LTS", "package": "apache2", "affected": null, "fixed": "2.4.18-2ubuntu3.17+esm12", "status": "fixed", "ref": "https://osv.dev/vulnerability/UBUNTU-CVE-2023-38709"}, {"ecosystem": "Ubuntu:Pro:18.04:LTS", "package": "apache2", "affected": null, "fixed": "2.4.29-1ubuntu4.27+esm2", "status": "fixed", "ref": "https://osv.dev/vulnerability/UBUNTU-CVE-2023-38709"}, {"ecosystem": "Ubuntu:20.04:LTS", "package": "apache2", "affected": null, "fixed": "2.4.41-4ubuntu3.17", "status": "fixed", "ref": "https://osv.dev/vulnerability/UBUNTU-CVE-2023-38709"}, {"ecosystem": "Ubuntu:22.04:LTS", "package": "apache2", "affected": null, "fixed": "2.4.52-1ubuntu4.9", "status": "fixed", "ref": "https://osv.dev/vulnerability/UBUNTU-CVE-2023-38709"}, {"ecosystem": "Ubuntu:24.04:LTS", "package": "apache2", "affected": null, "fixed": "2.4.58-1ubuntu8.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/UBUNTU-CVE-2023-38709"}, {"ecosystem": "Ubuntu:20.04:LTS", "package": "apache2", "affected": null, "fixed": "2.4.41-4ubuntu3.17", "status": "fixed", "ref": "https://osv.dev/vulnerability/USN-6729-1"}, {"ecosystem": "Ubuntu:22.04:LTS", "package": "apache2", "affected": null, "fixed": "2.4.52-1ubuntu4.9", "status": "fixed", "ref": "https://osv.dev/vulnerability/USN-6729-1"}, {"ecosystem": "Ubuntu:Pro:16.04:LTS", "package": "apache2", "affected": null, "fixed": "2.4.18-2ubuntu3.17+esm12", "status": "fixed", "ref": "https://osv.dev/vulnerability/USN-6729-2"}, {"ecosystem": "Ubuntu:Pro:18.04:LTS", "package": "apache2", "affected": null, "fixed": "2.4.29-1ubuntu4.27+esm2", "status": "fixed", "ref": "https://osv.dev/vulnerability/USN-6729-2"}, {"ecosystem": "Ubuntu:24.04:LTS", "package": "apache2", "affected": null, "fixed": "2.4.58-1ubuntu8.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/USN-6729-3"}, {"ecosystem": "Ubuntu:Pro:14.04:LTS", "package": "apache2", "affected": null, "fixed": "2.4.7-1ubuntu4.22+esm12", "status": "fixed", "ref": "https://osv.dev/vulnerability/USN-8338-1"}, {"ecosystem": "Ubuntu:Pro:16.04:LTS", "package": "apache2", "affected": null, "fixed": "2.4.18-2ubuntu3.17+esm17", "status": "fixed", "ref": "https://osv.dev/vulnerability/USN-8338-1"}, {"ecosystem": "Ubuntu:Pro:18.04:LTS", "package": "apache2", "affected": null, "fixed": "2.4.29-1ubuntu4.27+esm7", "status": "fixed", "ref": "https://osv.dev/vulnerability/USN-8338-1"}, {"ecosystem": "Ubuntu:Pro:20.04:LTS", "package": "apache2", "affected": null, "fixed": "2.4.41-4ubuntu3.23+esm3", "status": "fixed", "ref": "https://osv.dev/vulnerability/USN-8338-1"}, {"ecosystem": "SUSE:Linux Enterprise Software Development Kit 12 SP5", "package": "apache2", "affected": null, "fixed": "2.4.51-35.41.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2024:1627-1"}, {"ecosystem": "SUSE:Linux Enterprise Server 12 SP5", "package": "apache2", "affected": null, "fixed": "2.4.51-35.41.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2024:1627-1"}, {"ecosystem": "SUSE:Linux Enterprise Server for SAP Applications 12 SP5", "package": "apache2", "affected": null, "fixed": "2.4.51-35.41.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2024:1627-1"}, {"ecosystem": "SUSE:Linux Enterprise High Performance Computing 15 SP2-LTSS", "package": "apache2", "affected": null, "fixed": "2.4.51-150200.3.62.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2024:1788-1"}, {"ecosystem": "SUSE:Linux Enterprise High Performance Computing 15 SP3-LTSS", "package": "apache2", "affected": null, "fixed": "2.4.51-150200.3.62.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2024:1788-1"}, {"ecosystem": "SUSE:Linux Enterprise Server 15 SP2-LTSS", "package": "apache2", "affected": null, "fixed": "2.4.51-150200.3.62.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2024:1788-1"}, {"ecosystem": "SUSE:Linux Enterprise Server 15 SP3-LTSS", "package": "apache2", "affected": null, "fixed": "2.4.51-150200.3.62.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2024:1788-1"}, {"ecosystem": "SUSE:Linux Enterprise Server for SAP Applications 15 SP2", "package": "apache2", "affected": null, "fixed": "2.4.51-150200.3.62.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2024:1788-1"}, {"ecosystem": "SUSE:Linux Enterprise Server for SAP Applications 15 SP3", "package": "apache2", "affected": null, "fixed": "2.4.51-150200.3.62.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2024:1788-1"}, {"ecosystem": "SUSE:Enterprise Storage 7.1", "package": "apache2", "affected": null, "fixed": "2.4.51-150200.3.62.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2024:1788-1"}, {"ecosystem": "SUSE:Linux Enterprise Module for Basesystem 15 SP5", "package": "apache2", "affected": null, "fixed": "2.4.51-150400.6.17.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2024:1868-1"}, {"ecosystem": "SUSE:Linux Enterprise Module for Package Hub 15 SP5", "package": "apache2", "affected": null, "fixed": "2.4.51-150400.6.17.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2024:1868-1"}, {"ecosystem": "SUSE:Linux Enterprise Module for Server Applications 15 SP5", "package": "apache2", "affected": null, "fixed": "2.4.51-150400.6.17.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2024:1868-1"}, {"ecosystem": "SUSE:Linux Enterprise Module for Server Applications 15 SP6", "package": "apache2", "affected": null, "fixed": "2.4.51-150400.6.17.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2024:1868-1"}, {"ecosystem": "SUSE:Linux Enterprise High Performance Computing 15 SP4-ESPOS", "package": "apache2", "affected": null, "fixed": "2.4.51-150400.6.17.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2024:1868-1"}, {"ecosystem": "SUSE:Linux Enterprise High Performance Computing 15 SP4-LTSS", "package": "apache2", "affected": null, "fixed": "2.4.51-150400.6.17.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2024:1868-1"}, {"ecosystem": "SUSE:Linux Enterprise Server 15 SP4-LTSS", "package": "apache2", "affected": null, "fixed": "2.4.51-150400.6.17.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2024:1868-1"}, {"ecosystem": "SUSE:Linux Enterprise Server for SAP Applications 15 SP4", "package": "apache2", "affected": null, "fixed": "2.4.51-150400.6.17.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2024:1868-1"}, {"ecosystem": "SUSE:Manager Proxy 4.3", "package": "apache2", "affected": null, "fixed": "2.4.51-150400.6.17.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2024:1868-1"}, {"ecosystem": "SUSE:Manager Server 4.3", "package": "apache2", "affected": null, "fixed": "2.4.51-150400.6.17.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2024:1868-1"}, {"ecosystem": "openSUSE:Leap 15.5", "package": "apache2", "affected": null, "fixed": "2.4.51-150400.6.17.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2024:1868-1"}, {"ecosystem": "SUSE:Linux Enterprise Module for Basesystem 15 SP6", "package": "apache2", "affected": null, "fixed": "2.4.58-150600.5.3.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2024:1963-1"}, {"ecosystem": "SUSE:Linux Enterprise Module for Package Hub 15 SP6", "package": "apache2", "affected": null, "fixed": "2.4.58-150600.5.3.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2024:1963-1"}, {"ecosystem": "openSUSE:Leap 15.6", "package": "apache2", "affected": null, "fixed": "2.4.58-150600.5.3.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2024:1963-1"}, {"ecosystem": "SUSE:Linux Enterprise High Performance Computing 15 SP4-ESPOS", "package": "apache2", "affected": null, "fixed": "2.4.66-150400.6.57.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2026:2686-1"}, {"ecosystem": "SUSE:Linux Enterprise High Performance Computing 15 SP4-LTSS", "package": "apache2", "affected": null, "fixed": "2.4.66-150400.6.57.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2026:2686-1"}, {"ecosystem": "SUSE:Linux Enterprise High Performance Computing 15 SP5-ESPOS", "package": "apache2", "affected": null, "fixed": "2.4.66-150400.6.57.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2026:2686-1"}, {"ecosystem": "SUSE:Linux Enterprise High Performance Computing 15 SP5-LTSS", "package": "apache2", "affected": null, "fixed": "2.4.66-150400.6.57.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2026:2686-1"}, {"ecosystem": "SUSE:Linux Enterprise Server 15 SP4-LTSS", "package": "apache2", "affected": null, "fixed": "2.4.66-150400.6.57.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2026:2686-1"}, {"ecosystem": "SUSE:Linux Enterprise Server 15 SP5-LTSS", "package": "apache2", "affected": null, "fixed": "2.4.66-150400.6.57.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2026:2686-1"}, {"ecosystem": "SUSE:Linux Enterprise Server for SAP Applications 15 SP4", "package": "apache2", "affected": null, "fixed": "2.4.66-150400.6.57.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2026:2686-1"}, {"ecosystem": "SUSE:Linux Enterprise Server for SAP Applications 15 SP5", "package": "apache2", "affected": null, "fixed": "2.4.66-150400.6.57.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2026:2686-1"}, {"ecosystem": "Red Hat:enterprise_linux:8::appstream", "package": "httpd", "affected": null, "fixed": "0:2.4.37-65.module+el8.10.0+21982+14717793", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2024:4197"}, {"ecosystem": "Red Hat:enterprise_linux:9::appstream", "package": "httpd", "affected": null, "fixed": "0:2.4.62-1.el9", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2024:9306"}]}