Lucene search

K
ubuntuUbuntuUSN-860-1
HistoryNov 19, 2009 - 12:00 a.m.

Apache vulnerabilities

2009-11-1900:00:00
ubuntu.com
48

5.8 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:N/I:P/A:P

7.2 High

AI Score

Confidence

Low

0.007 Low

EPSS

Percentile

80.9%

Releases

  • Ubuntu 9.10
  • Ubuntu 9.04
  • Ubuntu 8.10
  • Ubuntu 8.04
  • Ubuntu 6.06

Packages

  • apache2 -

Details

Marsh Ray and Steve Dispensa discovered a flaw in the TLS and SSLv3
protocols. If an attacker could perform a machine-in-the-middle attack at the
start of a TLS connection, the attacker could inject arbitrary content at
the beginning of the user’s session. The flaw is with TLS renegotiation and
potentially affects any software that supports this feature. Attacks
against the HTTPS protocol are known, with the severity of the issue
depending on the safeguards used in the web application. Until the TLS
protocol and underlying libraries are adjusted to defend against this
vulnerability, a partial, temporary workaround has been applied to Apache
that disables client initiated TLS renegotiation. This update does not
protect against server initiated TLS renegotiation when using
SSLVerifyClient and SSLCipherSuite on a per Directory or Location basis.
Users can defend againt server inititiated TLS renegotiation attacks by
adjusting their Apache configuration to use SSLVerifyClient and
SSLCipherSuite only on the server or virtual host level. (CVE-2009-3555)

It was discovered that mod_proxy_ftp in Apache did not properly sanitize
its input when processing replies to EPASV and PASV commands. An attacker
could use this to cause a denial of service in the Apache child process.
(CVE-2009-3094)

Another flaw was discovered in mod_proxy_ftp. If Apache is configured as a
reverse proxy, an attacker could send a crafted HTTP header to bypass
intended access controls and send arbitrary commands to the FTP server.
(CVE-2009-3095)

OSVersionArchitecturePackageVersionFilename
Ubuntu9.10noarchapache2.2-common< 2.2.12-1ubuntu2.1UNKNOWN
Ubuntu9.10noarchapache2-prefork-dev< 2.2.12-1ubuntu2.1UNKNOWN
Ubuntu9.10noarchapache2-suexec< 2.2.12-1ubuntu2.1UNKNOWN
Ubuntu9.10noarchapache2-suexec-custom< 2.2.12-1ubuntu2.1UNKNOWN
Ubuntu9.10noarchapache2-threaded-dev< 2.2.12-1ubuntu2.1UNKNOWN
Ubuntu9.10noarchapache2-utils< 2.2.12-1ubuntu2.1UNKNOWN
Ubuntu9.10noarchapache2.2-bin< 2.2.12-1ubuntu2.1UNKNOWN
Ubuntu9.04noarchapache2.2-common< 2.2.11-2ubuntu2.5UNKNOWN
Ubuntu9.04noarchapache2< mpm-event-2.2.11-2ubuntu2.5UNKNOWN
Ubuntu9.04noarchapache2< mpm-prefork-2.2.11-2ubuntu2.5UNKNOWN
Rows per page:
1-10 of 431

5.8 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:N/I:P/A:P

7.2 High

AI Score

Confidence

Low

0.007 Low

EPSS

Percentile

80.9%