Red Hat Bugzilla – Bug 1315739
CVE-2016-2145 mod_auth_mellon: Missing error check when calling ap_get_client_block()
Last modified: 2016-03-19 22:29:27 EDT
It was reported that am_read_post_data() was missing check if ap_get_client_block() returns error, causing segmentation fault.
Name: Olav Morken (Uninett)
Upstream: Vincent Rasneur
Note that fixing commit is the same as for CVE-2016-2146.
Created mod_auth_mellon tracking bugs for this issue:
Affects: fedora-all [bug 1316295]
mod_auth_mellon-0.11.1-1.fc23 has been pushed to the Fedora 23 stable repository. If problems still persist, please make note of it in this bug report.