| Summary: | <www-apache/mod_fcgid-2.3.7: FcgidMaxProcessesPerClass is ignored in VirtualHost (CVE-2012-1181) | ||
|---|---|---|---|
| Product: | Gentoo Security | Reporter: | GLSAMaker/CVETool Bot <glsamaker> |
| Component: | Vulnerabilities | Assignee: | Gentoo Security <security> |
| Status: | RESOLVED FIXED | ||
| Severity: | normal | CC: | apache-bugs, ramereth |
| Priority: | Normal | ||
| Version: | unspecified | ||
| Hardware: | All | ||
| OS: | Linux | ||
| Whiteboard: | B3 [glsa] | ||
| Package list: | Runtime testing required: | --- | |
|
Description
GLSAMaker/CVETool Bot
2012-03-22 20:26:11 UTC
According to upstream this is fixed in 2.3.7: https://issues.apache.org/bugzilla/show_bug.cgi?id=49902 (In reply to comment #1) > According to upstream this is fixed in 2.3.7: > https://issues.apache.org/bugzilla/show_bug.cgi?id=49902 I just pushed 2.3.7 to portage FYI. Great, thanks. Arches, please test and mark stable: =www-apache/mod_fcgid-2.3.7 Target keywords : "amd64 ppc x86" amd64 stable x86 stable ppc done Thanks, folks. GLSA Vote: yes. GLSA vote: yes. Added to existing GLSA request. This issue was resolved and addressed in GLSA 201207-09 at http://security.gentoo.org/glsa/glsa-201207-09.xml by GLSA coordinator Sean Amoss (ackle). |