[Secure-testing-team] Bug#569658: ModSecurity Detection Bypass and Denial of Service Vulnerabilities

Giuseppe Iuculano iuculano at debian.org
Sat Feb 13 08:55:13 UTC 2010


Package: libapache-mod-security
Severity: serious
Tags: security

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Hi,

libapache-mod-security 2.5.12 fixed multiple security flaws.

References:
[1] http://sourceforge.net/projects/mod-security/files/modsecurity-apache/2.5.12/CHANGES_2.5.12.txt/download
[2] https://bugzilla.redhat.com/show_bug.cgi?id=563455
[3] http://secunia.com/advisories/38460/
[4] http://freshmeat.net/projects/modsecurity/releases/312017
[5] http://www.modsecurity.org/

Cheers,
Giuseppe

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.10 (GNU/Linux)

iEYEARECAAYFAkt2aOsACgkQNxpp46476apuIwCeMPSsgmA8dFSIkLvABlCM1LC/
3A8Anik1CW/wS8g9P5uqBruU5APXtJOe
=FBoT
-----END PGP SIGNATURE-----





More information about the Secure-testing-team mailing list