~ubuntu-branches/ubuntu/intrepid/apache2/intrepid-updates

Viewing all changes in revision 41.

  • Committer: Bazaar Package Importer
  • Author(s): Marc Deslauriers
  • Date: 2009-07-09 14:47:48 UTC
  • Revision ID: james.westby@ubuntu.com-20090709144748-t907wbg253ozq80b
Tags: 2.2.9-7ubuntu3.2
* SECURITY UPDATE: remote denial of service in the mod_proxy module via
  amount of streamed data that exceeds the Content-Length value
  - debian/patches/902_CVE-2009-1890.dpatch: make sure Content-Length is
    sane and check the length of the data in modules/proxy/mod_proxy_http.c
  - CVE-2009-1890
* SECURITY UPDATE: remote denial of service in mod_deflate module when
  the network connection was closed before compression completed
  - debian/patches/903_CVE-2009-1891.dpatch: fail if the connection has
    been aborted in server/core_filters.c
  - CVE-2009-1891

expand all expand all

Show diffs side-by-side

added added

removed removed

Lines of Context: