Mod_Proxy_Cluster security update for AlmaLinux 10

Published by

AlmaLinux has released an important security update for the mod_proxy_cluster package used in AlmaLinux 10, identified as ALSA-2025:9466. This update addresses a moderate severity security vulnerability related to unauthorized MCMP requests (CVE-2024-10306) within the mod_proxy_cluster module, which is a component of the Apache HTTP Server that facilitates load balancing.

The update was officially released on June 25, 2025, and is crucial for maintaining the security and functionality of servers running AlmaLinux 10. For those who have subscribed to errata notifications, this email serves as a reminder of the importance of keeping software up to date to protect against potential security threats.

For further details about the vulnerability, including its impact and a CVSS score, users are encouraged to refer to the CVE page linked in the announcement. The update includes comprehensive information and updated packages, which can be accessed through the provided link.

This message is an automated notification, and recipients are advised not to reply directly. For inquiries or further assistance, users can reach out through the AlmaLinux community chat. Additionally, those who wish to modify their notification preferences can manage their subscriptions via the AlmaLinux mailing list portal.

In summary, keeping software updated is vital for security, and this update highlights the ongoing efforts by the AlmaLinux team to safeguard their users against vulnerabilities

Mod_Proxy_Cluster security update for AlmaLinux 10

Updated mod_proxy_cluster packages are available for AlmaLinux 10:

ALSA-2025:9466: mod_proxy_cluster security update (Moderate)

Mod_Proxy_Cluster security update for AlmaLinux 10 @ Linux Compatible