drucken bookmarks versenden konfigurieren admin pdf Sicherheit: Mangelnde Rechteprüfung in mod_security
Name: |
Mangelnde Rechteprüfung in mod_security |
|
ID: |
FEDORA-2014-4720 |
|
Distribution: |
Fedora |
|
Plattformen: |
Fedora 19 |
|
Datum: |
Di, 15. April 2014, 06:26 |
|
Referenzen: |
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-5705 |
|
Applikationen: |
ModSecurity |
|
Originalnachricht |
Name : mod_security Product : Fedora 19 Version : 2.7.5 Release : 3.fc19 URL : http://www.modsecurity.org/ Summary : Security module for the Apache HTTP Server Description : ModSecurity is an open source intrusion detection and prevention engine for web applications. It operates embedded into the web server, acting as a powerful umbrella - shielding web applications from attacks.
------------------------------------------------------------------------------- - Update Information:
Fix Chunked string case sensitive issue (CVE-2013-5705, RHBZ #1082904 #1082905 #1082906) ------------------------------------------------------------------------------- - ChangeLog:
* Tue Apr 1 2014 Athmane Madjoudj <athmane@fedoraproject.org> 2.7.5-3 - Fix Chunked string case sensitive issue (CVE-2013-5705, RHBZ #1082904 #1082905 #1082906) * Sat Aug 3 2013 Petr Pisar <ppisar@redhat.com> - 2.7.5-2 - Perl 5.18 rebuild * Tue Jul 30 2013 Athmane Madjoudj <athmane@fedoraproject.org> 2.7.5-1 - Update to 2.7.5 * Thu Jul 18 2013 Petr Pisar <ppisar@redhat.com> - 2.7.4-2 - Perl 5.18 rebuild ------------------------------------------------------------------------------- - References:
[ 1 ] Bug #1082904 - CVE-2013-5705 mod_security: bypass of intended rules via chunked requests https://bugzilla.redhat.com/show_bug.cgi?id=1082904 ------------------------------------------------------------------------------- -
This update can be installed with the "yum" update program. Use su -c 'yum update mod_security' at the command line. For more information, refer to "Managing Software with yum", available at http://docs.fedoraproject.org/yum/.
All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys ------------------------------------------------------------------------------- - _______________________________________________ package-announce mailing list package-announce@lists.fedoraproject.org https://admin.fedoraproject.org/mailman/listinfo/package-announce
|
|
|
|