MandrakeSoft Security Advisory MDKSA-2004:043 : apache2

May 10th, 2004
Updated apache2 packages fixes a denial of service vulnerability in mod_ssl

A memory leak in mod_ssl in the Apache HTTP Server prior to version2.0.49 allows a remote denial of service attack against an SSL-enabled server.

The updated packages provide a patched mod_ssl to correct these problems.


The released versions of Mandrake GNU/Linux affected are:
  • 9.1
  • 9.2
  • 9.2/AMD64
  • 10.0
Full information about this advisory, including the updated packages, is available at:
www.mandrakesecure.net/en/advisories/advisory.php?name=MDKSA-2004:043

Other references:
http://cve.mitre.org/cgi-bin/cvename.cgi?n...e=CAN-2004-0113

Posted automatically by aru (mdksec2mub v0.0.8)