The update of the Apache HTTP Server (httpd) to version 2.2.18 earlier this month to close a denial of service (DoS) problem appears to have exposed a related DoS vulnerability. The developers have now released httpd 2.2.19 to fix this new problem which has been rated as moderately critical; however, as with the previous DoS vulnerability, it requires that mod_autoindex is enabled in the web server.. It appears that the updated Apache Portable Runtime (APR) 1.4.4 The link for this article located at H Security is no longer available. . Recent patch for Apache HTTP Server resolves a denial-of-service vulnerability linked to mod_autoindex functionality, classified as moderately severe.. Apache HTTP Server, DoS fix, critical update, security patch. . Anthony Pell
Get the latest Linux and open source security news straight to your inbox.