Mandriva Linux Security Advisory 2009-102 – mod_proxy_ajp.c in the mod_proxy_ajp module in the Apache HTTP Server 2.2.11 allows remote attackers to obtain sensitive response data, intended for a client that sent an earlier POST request with no request body, via an HTTP request. This update provides fixes for that vulnerability.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/77205/MDVSA-2009-102.txt
Source: https://packetstormsecurity.com/files/77205/Mandriva-Linux-Security-Advisory-2009-102.html

