~ubuntu-branches/ubuntu/hardy/apache2/hardy-security

Viewing all changes in revision 30.

  • Committer: Bazaar Package Importer
  • Author(s): Marc Deslauriers
  • Date: 2009-07-09 14:53:32 UTC
  • mfrom: (27.1.2 hardy-proposed)
  • Revision ID: james.westby@ubuntu.com-20090709145332-2enq0fimjpt91qpk
Tags: 2.2.8-1ubuntu0.10
* SECURITY UPDATE: remote denial of service in the mod_proxy module via
  amount of streamed data that exceeds the Content-Length value
  - debian/patches/204_CVE-2009-1890.dpatch: make sure Content-Length is
    sane and check the length of the data in modules/proxy/mod_proxy_http.c
  - CVE-2009-1890
* SECURITY UPDATE: remote denial of service in mod_deflate module when
  the network connection was closed before compression completed
  - debian/patches/205_CVE-2009-1891.dpatch: fail if the connection has
    been aborted in server/core_filters.c
  - CVE-2009-1891

expand all expand all

Show diffs side-by-side

added added

removed removed

Lines of Context: