Advisories Blog | G5 Cyber Security

Ubuntu Security Notice 908-1

Ubuntu Security Notice 908-1 – It was discovered that mod_proxy_ajp did not properly handle errors when a client doesn’t send a request body. A remote attacker could exploit this with a crafted request and cause a denial of service. This issue affected Ubuntu 8.04 LTS, 8.10, 9.04 and 9.10. It was discovered that Apache did not properly handle headers in subrequests under certain conditions. A remote attacker could exploit this with a crafted request and possibly obtain sensitive information from previous requests.

 

You can download this advisory from the following link: https://packetstormsecurity.com/files/download/87107/USN-908-1.txt

Source: https://packetstormsecurity.com/files/87107/Ubuntu-Security-Notice-908-1.html

Exit mobile version