[MBT] new ticket for pkg apache-mod_gzip ""Possible security related bugs" fixed in SuSE SA"
bugs at pld-linux.org
bugs at pld-linux.org
Wed Jan 28 16:53:28 CET 2004
Date: 2004-01-28 16:53:27+01 Author: (kreutzm) <kreutzm at itp.uni-hannover.de>
Title: "Possible security related bugs" fixed in SuSE SA
Ticket ID: #819
Ticket URL: http://bugs.pld-linux.org/?bug=819
Package: apache-mod_gzip-5:1.3.19.1a-4
Distribution: PLD-1.0.main
Category: security problem
Current state: opened
Text:
The following SuSE-SA detail the problem:
SuSE-SA:2003:049
SuSE-SA:2003:050
SuSE-SA:2003:051
SuSE-SA:2004:001
SuSE-SA:2004:002
The main issue is a "remote code execution while running in debug-mode". The latter SAs mention further fixes:
Additionally the mod_gzip code was audited to fix more possible security
related bugs.
After more testing a new apache-contrib RPM package will be released.
More information about the pld-bugs
mailing list