Hello Andy,
On 30/08/11 01:02, Andy Smith wrote:
Hello,
On Thu, Aug 25, 2011 at 04:06:10PM +0000, Andy Smith wrote:
----- Forwarded message from Jan Henkins -----
Yesterday a nasty Apache DoS vuln was released. So far all versions of
Apache is affected by this. Here are some advisories:
An update was pushed to
squeeze-security earlier:
apache2 (2.2.16-6+squeeze2) squeeze-security; urgency=high
* Fix CVE-2011-3192: DoS by high memory usage for a large number of
overlapping ranges.
-- Stefan Fritsch<sf(a)debian.org> Mon, 29 Aug 2011 20:23:01 +0200
Cheers,
Andy
Thanks Andy! I checked, and for people like myself whom have not
upgraded to Squeeze from Lenny yet, there is still hope:
apache2 (2.2.9-10+lenny10) lenny-security; urgency=high
* Fix CVE-2011-3192: DoS by high memory usage for a large number of
overlapping ranges.
* Fix CVE-2010-1452: Crash in mod_dav.
-- Stefan Fritsch<sf(a)debian.org> Mon, 29 Aug 2011 21:18:06 +0200
--
Regards,
Jan Henkins