Your submission was sent successfully! Close

You have successfully unsubscribed! Close

CVE-2007-6420

Published: 12 January 2008

Cross-site request forgery (CSRF) vulnerability in the balancer-manager in mod_proxy_balancer for Apache HTTP Server 2.2.x allows remote attackers to gain privileges via unspecified vectors.

Priority

Low

Status

Package Release Status
apache2
Launchpad, Ubuntu, Debian
dapper Not vulnerable
(code not present)
edgy Needed
(reached end-of-life)
feisty Needed
(reached end-of-life)
gutsy
Released (2.2.4-3ubuntu0.2)
hardy
Released (2.2.8-1ubuntu0.4)
intrepid
Released (2.2.9-1ubuntu1)
upstream
Released (2.2.9-1)
Patches:
upstream: http://svn.apache.org/viewvc?view=rev&revision=661666
upstream: http://svn.apache.org/viewvc/httpd/httpd/tags/2.2.9/modules/proxy/mod_proxy_balancer.c?r1=608192&r2=663514