Re: [SECURITY] [CVE-2009-0796] Vulnerability found in Apache::Status and Apache2::Status

2009-04-07 Thread Fred Moyer
Update - I fat fingered the CVE number in this email body previously (but it was correct in the subject). The correct vulnerability reference number is CVE-2009-0796. On Wed, Apr 1, 2009 at 2:58 PM, Fred Moyer wrote: > mod_perl lists, > > A specific vulnerability [CVE-2009-0795] in Apache::Statu

[SECURITY] [CVE-2009-0796] Vulnerability found in Apache::Status and Apache2::Status

2009-04-01 Thread Fred Moyer
mod_perl lists, A specific vulnerability [CVE-2009-0795] in Apache::Status and Apache2::Status has been discovered which may affect the security of your mod_perl installation. Running Apache::Status on a public server with no protection has always been a bad idea though, vulnerability or not. Th