USN-1199-1: Apache vulnerability
1 September 2011
A remote attacker could send crafted input to Apache and cause it to crash.
Releases
Packages
- apache2 - Apache HTTP server
Details
A flaw was discovered in the byterange filter in Apache. A remote attacker
could exploit this to cause a denial of service via resource exhaustion.
Update instructions
The problem can be corrected by updating your system to the following package versions:
Ubuntu 8.04
-
apache2-mpm-worker
-
2.2.8-1ubuntu0.21
-
apache2-mpm-event
-
2.2.8-1ubuntu0.21
-
apache2-mpm-prefork
-
2.2.8-1ubuntu0.21
-
apache2-mpm-perchild
-
2.2.8-1ubuntu0.21
Ubuntu 11.04
Ubuntu 10.10
Ubuntu 10.04
In general, a standard system update will make all the necessary changes.