FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

Apache httpd -- DoS exploit in HTTP/2

Affected packages
apache24 < 2.4.67_2

Details

VuXML ID 0d6d9d9b-5feb-11f1-8607-8447094a420f
Discovery 2026-06-02
Entry 2026-06-04

Calif security reports:

Remote DoS in mod_http2

References

CVE Name CVE-2026-49975
URL https://blog.calif.io/p/codex-discovered-a-hidden-http2-bomb