[MBT] new ticket for pkg apache-mod_gzip ""Possible security related bugs" fixed in SuSE SA"

bugs at pld-linux.org bugs at pld-linux.org
Wed Jan 28 16:53:28 CET 2004


Date: 2004-01-28 16:53:27+01	Author:  (kreutzm) <kreutzm at itp.uni-hannover.de> 
Title:         "Possible security related bugs" fixed in SuSE SA
Ticket ID:     #819
Ticket URL:    http://bugs.pld-linux.org/?bug=819
Package:       apache-mod_gzip-5:1.3.19.1a-4
Distribution:  PLD-1.0.main
Category:      security problem
Current state: opened
Text:

The following SuSE-SA detail the problem:
SuSE-SA:2003:049
SuSE-SA:2003:050
SuSE-SA:2003:051
SuSE-SA:2004:001
SuSE-SA:2004:002

The main issue is a "remote code execution while running in debug-mode". The latter SAs mention further fixes:
    Additionally the mod_gzip code was audited to fix more possible security                                
    related bugs.                                                                                           
    After more testing a new apache-contrib RPM package will be released.                                   




More information about the pld-bugs mailing list