Bug 18881 - mod_rewrite bug allows access despite deny/allow filters
mod_rewrite bug allows access despite deny/allow filters
Status: CLOSED ERRATA
Product: Red Hat Linux
Classification: Retired
Component: apache (Show other bugs)
7.0
i386 Linux
high Severity medium
: ---
: ---
Assigned To: Nalin Dahyabhai
Dale Lovelace
: Security
Depends On:
Blocks:
  Show dependency treegraph
 
Reported: 2000-10-11 06:51 EDT by Frank Ch. Eigler
Modified: 2007-03-26 23:36 EDT (History)
4 users (show)

See Also:
Fixed In Version:
Doc Type: Bug Fix
Doc Text:
Story Points: ---
Clone Of:
Environment:
Last Closed: 2000-10-16 00:09:14 EDT
Type: ---
Regression: ---
Mount Type: ---
Documentation: ---
CRM:
Verified Versions:
Category: ---
oVirt Team: ---
RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: ---


Attachments (Terms of Use)
phhttpd-eapi patch fot apache 1.3.14 mod ssl 2.7.1 (7.13 KB, patch)
2000-10-16 00:09 EDT, Arenas Belon, Carlo Marcelo
no flags Details | Diff

  None (edit)
Description Frank Ch. Eigler 2000-10-11 06:51:04 EDT
Please see the recent bugtraq announcement.
Comment 1 Pekka Savola 2000-10-13 14:14:52 EDT
apache-1.3.14 is out.  This fixes this and other problems too, including a mass virtual hosting security issue.
Comment 2 Arenas Belon, Carlo Marcelo 2000-10-16 00:07:04 EDT
apache 1.3.14 with mod_ssl 2.7.1-1.3.14 needs a new phhttpd-eapi patch and a
small change on apache.spec

both patches added as attachment.

a final RPM/SRPM build with those patches is available from :
ftp://sajino.terra.com.pe/pub/linux/redhat/carenas/7.0/
Comment 3 Arenas Belon, Carlo Marcelo 2000-10-16 00:09:14 EDT
Created attachment 4188 [details]
phhttpd-eapi patch fot apache 1.3.14 mod ssl 2.7.1

Note You need to log in before you can comment on or make changes to this bug.