b5c6eb5f0e
All people using mod_rewrite are strongly encouraged to update. An off-by-one flaw exists in the Rewrite module, mod_rewrite. Depending on the manner in which Apache httpd was compiled, this software defect may result in a vulnerability which, in combination with certain types of Rewrite rules in the web server configuration files, could be triggered remotely. For vulnerable builds, the nature of the vulnerability can be denial of service (crashing of web server processes) or potentially allow arbitrary code execution. This issue has been rated as having important security impact by the Apache HTTP Server Security Team Updates to latest versions will follow soon. Notified by: so@ (simon) Obtained from: Apache Security Team Security: CVE-2006-3747 |
||
---|---|---|
.. | ||
apache.sh | ||
exp-windowsupdate.patch | ||
patch-config.layout | ||
patch-configure.in | ||
patch-docs_conf_extra_httpd-ssl.conf.in | ||
patch-docs_conf_extra_httpd-userdir.conf.in | ||
patch-docs_conf_httpd.conf.in | ||
patch-Makefile.in | ||
patch-secfix-CAN-2005-3352 | ||
patch-secfix-CVE-2006-3747 | ||
patch-srclib:apr-util:build:dbm.m4 | ||
patch-srclib:apr-util:config.layout | ||
patch-srclib:apr-util:Makefile.in | ||
patch-srclib:apr-util:xml:expat:buildconf.sh | ||
patch-srclib:apr:build:apr_hints.m4 | ||
patch-srclib:apr:build:buildcheck.sh | ||
patch-srclib:apr:config.layout | ||
patch-srclib:apr:Makefile.in | ||
patch-srclib:apr:threadproc:unix:procsup.c | ||
patch-support:apachectl.in | ||
patch-support:apxs.in | ||
patch-support:envvars-std.in | ||
patch-support:log_server_status.in | ||
patch-support:Makefile.in |