Bug#279753: apache: execute arbitrary code via SSI issue (CAN-2004-0940)
Package: apache
Version: 1.3.27-0.1
Severity: important
Tags: woody, security
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Dear apache maintainer team,
How is CAN-2004-0940 issue in woody coped with?
I've checked "Non-Vulnerability Security Information for woody" page
(http://www.debian.org/security/nonvulns-woody), but there is not
CAN-2004-0940. Probably it affects woody.
I saw it was discussed in debian-apache mailing list, but it is about
package in sarge and sid (1.3.31 based), not woody (1.3.26 based).
So, I want to know about state of woody's apache.
- --
Regards,
Hideki Yamane henrich @ samba.gr.jp/iijmio-mail.jp
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.5 (GNU/Linux)
iD8DBQFBiwtCIu0hy8THJksRAr6bAJ99PhH07nrrnOXzNkNfkXENg4L6sACcDbUC
oUeIp1I/D+s4lIoHkRCbs/Q=
=tYRw
-----END PGP SIGNATURE-----
Reply to: