httpd-users mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From "Dan Mahoney (Gushi)" <d...@prime.gushi.org>
Subject [users@httpd] Impact of CVE-2017-9789?
Date Thu, 21 Sep 2017 06:39:49 GMT
Hey all,

Under FreeBSD, mod_http2 is not compiled by the ports tree by default.

Are we still vulnerable to this?

Is there any mitigation strategy besides upgrading?  (Disabling htaccess 
parsing, for example?)

-Dan

-- 


---------------------------------------------------------------------
To unsubscribe, e-mail: users-unsubscribe@httpd.apache.org
For additional commands, e-mail: users-help@httpd.apache.org


Mime
View raw message