Steve Kemp's Blog

Debian & Free Software

About This Site

This is a simple blog relating to Debian & Free Software issues.

Archive

Apache2 update
25th June 2005

Apache have now fixed the security bug I reported in Apache2’s mod_cgid a few days ago.

Because it requires that an attacker have write access to the httpd.conf file it’s not a real security bug. Unfortunately.

As such there’s no CVE ID, or likely to be any vendor updates.

Tags

Created by Chronicle v3.1