Lucene search

K
debianDebianDEBIAN:BSA-058:D96CE
HistoryNov 14, 2011 - 4:20 a.m.

[BSA-058] Security Update for apache2

2011-11-1404:20:22
lists.debian.org
19

4.3 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:N/I:N/A:P

6.5 Medium

AI Score

Confidence

High

0.248 Low

EPSS

Percentile

96.7%

Andres Salomon uploaded new packages for apache2 which fixed the
following security problems:

CVE-2011-3348
Possible denial of service in mod_proxy_ajp if combined with
mod_proxy_balancer.

For the lenny-backports distribution the problem has been fixed in
version 2.2.16-6+squeeze4~bpo50+1.

For the stable distribution (squeeze), this problem has been fixed in
version 2.2.16-6+squeeze4.
Attachment:
signature.asc
Description: PGP signature

4.3 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:N/I:N/A:P

6.5 Medium

AI Score

Confidence

High

0.248 Low

EPSS

Percentile

96.7%