Gentoo Linux Security Advisory GLSA 200407-18
https://security.gentoo.org/
Severity: Normal
Title: mod_ssl: Format string vulnerability
Date: July 22, 2004
Bugs: #57379
ID: 200407-18
Synopsis
=======
A bug in mod_ssl may allow a remote attacker to execute arbitrary code
when Apache is configured to use mod_ssl and mod_proxy.
Background
=========
mod_ssl provides Secure Sockets Layer encryption and authentication to
Apache 1.3.
Affected packages
================
-------------------------------------------------------------------
Package / Vulnerable / Unaffected
-------------------------------------------------------------------
1 net-www/mod_ssl <= 2.8.18 >= 2.8.19
==========
A bug in ssl_engine_ext.c makes mod_ssl vulnerable to a ssl_log()
related format string vulnerability in the mod_proxy hook functio...
style>.gentoo_availability{display:block;}
Warning: Undefined array key "advisory_info" in /var/www/www.linuxsecurity.com-443/html/tmp/regularlabs/custom_php/3894367_4c9dbbdde36eef04251a4ced7eac4df9 on line 11
Get the latest Linux and open source security news straight to your inbox.