Ubuntu Security Notice USN-160-1 – Multiple vulnerabilities exist in Apache 2.x. Marc Stern discovered a buffer overflow in the SSL module’s certificate revocation list (CRL) handler. Watchfire discovered that Apache insufficiently verified the Transfer-Encoding and Content-Length headers when acting as an HTTP proxy.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/39056/USN-160-1.txt
Source: https://packetstormsecurity.com/files/39056/Ubuntu-Security-Notice-160-1.html