[Forgot Password]
Login  Register Subscribe

30389

 
 

423868

 
 

247085

 
 

909

 
 

194218

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

MDVSA-2008:195 -- Mandriva apache

ID: oval:org.secpod.oval:def:301655Date: (C)2012-01-07   (M)2024-02-19
Class: PATCHFamily: unix




A vulnerability was discovered in the mod_proxy module in Apache where it did not limit the number of forwarded interim responses, allowing remote HTTP servers to cause a denial of service via a large number of interim responses . A cross-site scripting vulnerability was found in the mod_proxy_ftp module in Apache that allowed remote attackers to inject arbitrary web script or HTML via wildcards in a pathname in an FTP URI . The updated packages have been patched to prevent these issues.

Platform:
Mandriva Linux 2007.1
Mandriva Linux 2008.1
Mandriva Linux 2008.0
Product:
apache
Reference:
MDVSA-2008:195
CVE-2008-2364
CVE-2008-2939
CVE    2
CVE-2008-2364
CVE-2008-2939
CPE    3
cpe:/o:mandriva:linux:2008.1
cpe:/o:mandriva:linux:2007.1
cpe:/o:mandriva:linux:2008.0

© SecPod Technologies