CVE detail
CVE-2026-49975
Memory Allocation with Excessive Size Value vulnerability in Apache HTTP Server's mod_http leads to denial of service via malicious HTTP requests. This issue affects Apache HTTP Server: from 2.4.17 through 2.4.67.
Buzz score
Why this CVE is surfacing
This all-time snapshot uses the same composite formula as Trending across a 30-year evidence window, rather than a current rolling window.
Buzz score components · mention 30.0 · diversity 20.0 · KEV 0.0 · OTX 0.0 · PoC 4.5
Why it matters now
Mention timeline
- Total mentions
- 2
- within the 30d window
- Peak daily
- 1
- highest bucket
Evidence
Source links by recency
25 source links · newest first
ulnerability and there are signs of in-the-wild exploitation already. The new memory overread vulnerability, tracked as CVE-2026-8451, was found by researchers from security firm watchTowr who published a detailed write-up showing how unauthenticated malformed requests can result in protected process memory data being leaked back in responses. The ori
newswww.csoonline.comJul 3, 2026, 11:41 AMCitrix urges customers to patch NetScaler after fixing six vulnerabilities, including the HTTP/2 Bomb flaw and a high-severity CitrixBleed-style information disclosure bug.
newswww.securityweek.comJul 1, 2026, 11:20 AMy to respond without out-of-cycle patches. At time of writing, Microsoft has provided mitigation advice and patches for CVE-2026-33825 , CVE-2026-45585 , CVE-2026-45498 , and CVE-2026-41091 , leaving only two elevation of privilege vulnerabilities unpatched, known as MiniPlasma and GreenPlasma. However, a recent blog post by Nightmare Eclipse with the
vendorwww.rapid7.comJun 9, 2026, 9:04 PMInformation published.
vendormsrc.microsoft.comJun 9, 2026, 8:01 AM- https://security.access.redhat.com/data/csaf/v2/vex/2026/cve-2026-49975.jsonsecurity.access.redhat.com
No excerpt available.
Vendor Advisorysecurity.access.redhat.comJun 8, 2026, 4:16 PM No excerpt available.
Exploitgithub.comJun 8, 2026, 4:16 PM- https://bugzilla.redhat.com/show_bug.cgi?id=2485371bugzilla.redhat.com
No excerpt available.
Exploitbugzilla.redhat.comJun 8, 2026, 4:16 PM - https://access.redhat.com/security/cve/CVE-2026-49975access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comJun 8, 2026, 4:16 PM - https://access.redhat.com/errata/RHSA-2026:36846access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comJun 8, 2026, 4:16 PM - https://access.redhat.com/errata/RHSA-2026:36831access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comJun 8, 2026, 4:16 PM - https://access.redhat.com/errata/RHSA-2026:36373access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comJun 8, 2026, 4:16 PM - https://access.redhat.com/errata/RHSA-2026:27201access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comJun 8, 2026, 4:16 PM - https://access.redhat.com/errata/RHSA-2026:27200access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comJun 8, 2026, 4:16 PM - https://access.redhat.com/errata/RHSA-2026:27114access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comJun 8, 2026, 4:16 PM - https://access.redhat.com/errata/RHSA-2026:25225access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comJun 8, 2026, 4:16 PM - https://access.redhat.com/errata/RHSA-2026:25090access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comJun 8, 2026, 4:16 PM - https://access.redhat.com/errata/RHSA-2026:25057access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comJun 8, 2026, 4:16 PM - https://access.redhat.com/errata/RHSA-2026:25042access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comJun 8, 2026, 4:16 PM No excerpt available.
Vendor Advisorylists.debian.orgJun 8, 2026, 4:16 PM- http://www.openwall.com/lists/oss-security/2026/06/08/16www.openwall.com
No excerpt available.
Exploitwww.openwall.comJun 8, 2026, 4:16 PM - http://www.openwall.com/lists/oss-security/2026/06/03/3www.openwall.com
No excerpt available.
Exploitwww.openwall.comJun 8, 2026, 4:16 PM - https://httpd.apache.org/security/vulnerabilities_24.htmlhttpd.apache.org
No excerpt available.
Vendor Advisoryhttpd.apache.orgJun 8, 2026, 4:16 PM Security researchers are warning of an issue with the default HTTP/2 configuration used by major web servers which reportedly survived more than a decade of human review before showing up in Codex-assisted analysis. A flaw in the handling of the HTTP/2 protocol made a denial-of-service (DoS) attack possible on web servers including nginx, Apache HTTP […]
newswww.csoonline.comJun 8, 2026, 8:00 AMLinked URL: https://www.haproxy.com/blog/haproxy-cve-2026-49975-http2-bomb | Posted by owenthejumper | 7 points | 0 comments
communitynews.ycombinator.comJun 5, 2026, 10:14 AMThe default HTTP/2 configuration of major web servers is vulnerable to an attack chain combining a compression bomb and a Slowloris-style hold.
newswww.securityweek.comJun 3, 2026, 10:52 AM
Exploit code
Public exploit repository references
Public PoC repositories are third-party, potentially unsafe artifacts. Treat their code as untrusted and use it only on authorized systems in an isolated, least-privilege environment. cvebuzz does not execute the code or verify that an exploit works.
1 repository references · best confidence 0.90 · max 0 stars
- EQSTLab/CVE-2026-49975High confidencegithubNVD Exploit reference0 starsDiscovered Jul 15, 2026, 3:18 AM
NVD labels the source link as Exploit; this is not independent verification of the repository's code.
Related records
Similar CVEs
6 related CVEs with shared weakness or product evidence
- CVE-2026-48502CVSS 8.2 · High
MessagePack for C# is a MessagePack serializer for C#. Prior to 2.5.301 and 3.1.7, MessagePackReader.ReadDateTime() can allocate stack memory based on an attacker-controlled Messa…
- CVE-2026-27809CVSS 6.8 · Medium
psd-tools is a Python package for working with Adobe Photoshop PSD files. Prior to version 1.12.2, when a PSD file contains malformed RLE-compressed image data (e.g. a literal run…
- CVE-2025-25186CVSS 6.5 · Medium
Net::IMAP implements Internet Message Access Protocol (IMAP) client functionality in Ruby. Starting in version 0.3.2 and prior to versions 0.3.8, 0.4.19, and 0.5.6, there is a pos…
- CVE-2025-62600CVSS 8.6 · High
eprosima Fast DDS is a C++ implementation of the DDS (Data Distribution Service) standard of the OMG (Object Management Group). Prior to 2.6.11, 2.14.6, 3.2.4, 3.3.1, and 3.4.1, w…
- CVE-2025-62599CVSS 8.6 · High
eprosima Fast DDS is a C++ implementation of the DDS (Data Distribution Service) standard of the OMG (Object Management Group). Prior to 2.6.11, 2.14.6, 3.2.4, 3.3.1, and 3.4.1, w…
- CVE-2022-30522CVSS 7.5 · High
If Apache HTTP Server 2.4.53 is configured to do transformations with mod_sed in contexts where the input to mod_sed may be very large, mod_sed may make excessively large memory a…