Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!

Bug 336030

Summary: <www-servers/apache-2.2.16: CVE-2010-1452, CVE-2010-2068
Product: Gentoo Security Reporter: alex <alex>
Component: VulnerabilitiesAssignee: Gentoo Security <security>
Status: RESOLVED DUPLICATE    
Severity: normal    
Priority: High    
Version: unspecified   
Hardware: All   
OS: Linux   
Whiteboard:
Package list:
Runtime testing required: ---

Description alex 2010-09-04 21:18:10 UTC
two security bugs in apache
CVE-2010-1452: a remote denial of service bug in mod_cache and mod_dav
http://www.securityfocus.com/bid/41963
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1452

CVE-2010-2068: issue within mod_proxy_ajp, mod_proxy_http, mod_reqtimeout
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2068

Both CVEs are fixed in 2.2.16 which is already stable in portage
Comment 1 Alex Legler (RETIRED) archtester gentoo-dev Security 2010-09-04 21:32:31 UTC
This particular issue has already been reported. You will be automatically put into CC on the original bug.

Please be sure to search for existing reports first next time to avoid filing duplicates. (When searching for CVEs enter "CVE 2010 1452" without dashes for best results.) Thanks!


*** This bug has been marked as a duplicate of bug 330195 ***