Vulnerability Assessment & Network Security Forums



If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important.  If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery.


Home >> Browse Vulnerability Assessment Database >> Debian Local Security Checks >> [DSA133] DSA-133-1 apache-perl


Vulnerability Assessment Details

[DSA133] DSA-133-1 apache-perl

Vulnerability Assessment Summary
DSA-133-1 apache-perl

Detailed Explanation for this Vulnerability Assessment

Mark Litchfield found a denial of service attack in the Apache
web-server. While investigating the problem the Apache Software
Foundation discovered that the code for handling invalid requests which
use chunked encoding also might permit arbitrary code execution.
This has been fixed in version 1.3.9-14.1-1.21.20000309-1 of the Debian
apache-perl package and we recommend that you upgrade your apache-perl
package immediately.
An update for the soon to be released Debian GNU/Linux 3.0/woody
distribution will be available soon.


Solution : http://www.debian.org/security/2002/dsa-133
Network Security Threat Level: High

Networks Security ID: 5033

Vulnerability Assessment Copyright: This script is (C) 2006 Michel Arboi

Cables, Connectors

Juniper Networks SRX300 Services Gateway - security appliance
$407.41
Juniper Networks SRX300 Services Gateway - security appliance pictureJuniper Networks SRX 12V 5A Power Supply Adapter Inverter AC DC 100 210 220 OEM
$34.99
Juniper Networks SRX 12V 5A Power Supply Adapter Inverter AC DC 100 210 220 OEM pictureJuniper EX2200-24P-4G Ethernet Switch (EX2200-24P-4G)
$868.94
Juniper EX2200-24P-4G Ethernet Switch (EX2200-24P-4G) pictureLot of 2 Juniper Networks 910-0110-000 ISG 2000 Power Supply PS PFC250S-6101S-1
$59.99
Lot of 2 Juniper Networks 910-0110-000 ISG 2000 Power Supply PS PFC250S-6101S-1  picture


Discussions

No Discussions have been posted on this vulnerability.