~ubuntu-security/ubuntu-cve-tracker/master

« back to all changes in this revision

Viewing changes to retired/CVE-2007-6388

  • Committer: Steve Beattie
  • Date: 2019-02-19 06:18:27 UTC
  • Revision ID: sbeattie@ubuntu.com-20190219061827-oh57fzcfc1u9dlfk
The ubuntu-cve-tracker project has been converted to git.

Please use 'git clone https://git.launchpad.net/ubuntu-cve-tracker' to
get the converted tree.

Show diffs side-by-side

added added

removed removed

Lines of Context:
1
 
PublicDateAtUSN: 2008-01-08
2
 
PublicDate: 2008-01-08
3
 
Candidate: CVE-2007-6388
4
 
References:
5
 
 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-6388
6
 
 https://usn.ubuntu.com/usn/usn-575-1
7
 
Description:
8
 
 Cross-site scripting (XSS) vulnerability in mod_status in the Apache HTTP
9
 
 Server 2.2.0 through 2.2.6, 2.0.35 through 2.0.61, and 1.3.2 through
10
 
 1.3.39, when the server-status page is enabled, allows remote attackers to
11
 
 inject arbitrary web script or HTML via unspecified vectors.
12
 
Ubuntu-Description:
13
 
Notes:
14
 
 jdstrand> redhat has patch for all releases now
15
 
Bugs:
16
 
Priority: low
17
 
Assigned-to:
18
 
 
19
 
Patches_apache:
20
 
upstream_apache: 
21
 
dapper_apache: ignored (reached end-of-life)
22
 
edgy_apache: needed (reached end-of-life)
23
 
feisty_apache: needed (reached end-of-life)
24
 
gutsy_apache: DNE
25
 
hardy_apache: DNE
26
 
intrepid_apache: DNE
27
 
jaunty_apache: DNE
28
 
karmic_apache: DNE
29
 
devel_apache: DNE
30
 
 
31
 
Patches_apache2:
32
 
upstream_apache2: 
33
 
dapper_apache2: released (2.0.55-4ubuntu2.3)
34
 
edgy_apache2: released (2.0.55-4ubuntu4.2)
35
 
feisty_apache2: released (2.2.3-3.2ubuntu2.1)
36
 
gutsy_apache2: released (2.2.4-3ubuntu0.1)
37
 
hardy_apache2: not-affected (2.2.8-1)
38
 
intrepid_apache2: not-affected (2.2.8-1)
39
 
jaunty_apache2: not-affected (2.2.8-1)
40
 
karmic_apache2: not-affected (2.2.8-1)
41
 
devel_apache2: not-affected (2.2.8-1)