From 8506adc0f123bbc41de3e2ea66a58417a3560d2f Mon Sep 17 00:00:00 2001 From: Oliver Eikemeier Date: Wed, 17 Mar 2004 00:49:52 +0000 Subject: ModSecurity < 1.7.5 --- security/vuxml/vuln.xml | 24 ++++++++++++++++++++++++ 1 file changed, 24 insertions(+) (limited to 'security') diff --git a/security/vuxml/vuln.xml b/security/vuxml/vuln.xml index 50c719fcc6b1..c7072bde75ca 100644 --- a/security/vuxml/vuln.xml +++ b/security/vuxml/vuln.xml @@ -32,6 +32,30 @@ EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE. "http://www.vuxml.org/dtd/vuxml-1/vuxml-10.dtd"> + + ModSecurity for Apache 2.x remote off-by-one overflow + + + mod_security + 1.7.5 + + + + +

When the directive "SecFilterScanPost" is enabled, + the Apache 2.x version of ModSecurity is vulnerable + to an off-by-one overflow

+ +
+ + http://www.s-quadra.com/advisories/Adv-20040315.txt + + + 2004-02-09 + 2004-03-17 + +
+ mod_python denial-of-service vulnerability in parse_qs -- cgit v1.2.3