May 10th, 2004
Updated apache2 packages fixes a denial of service vulnerability in mod_ssl
A memory leak in mod_ssl in the Apache HTTP Server prior to version2.0.49 allows a remote denial of service attack against an SSL-enabled server.
The updated packages provide a patched mod_ssl to correct these problems.
The released versions of Mandrake GNU/Linux affected are:
- 9.1
- 9.2
- 9.2/AMD64
- 10.0
www.mandrakesecure.net/en/advisories/advisory.php?name=MDKSA-2004:043
Other references:
http://cve.mitre.org/cgi-bin/cvename.cgi?n...e=CAN-2004-0113
Posted automatically by aru (mdksec2mub v0.0.8)