httpd-users mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From Simon Oliver <simon.oli...@umist.ac.uk>
Subject Re: Chunk Overflow / Red Hat Update / Eeye RetinaApache
Date Fri, 21 Jun 2002 09:42:31 GMT
> Sorry people,
>  
> I just looked at how the 'scanner' works - it only checks the version, not the actual
chunk encoding issue - so it
> is a version checker and not of any direct use if you are patching Apache or using a
release from a distributor
> like RedHat.

Indeed I just chekced my boxes and it lit up my SuSE 7.2 servers as
vulnerable even after patching.

>From all the talk I've seen there isn't a proven vulnerability for Linux,
just BSD.

--
  Simon Oliver

---------------------------------------------------------------------
To unsubscribe, e-mail: users-unsubscribe@httpd.apache.org
For additional commands, e-mail: users-help@httpd.apache.org


Mime
View raw message