Re: apache security issue (with upstream new release)
thanks to your reply.
>> Do you know about apache security issue?
>
>Yes. According to the Apache maintainers, woody does not require an update.
Really? mod_alias is so much old(*), I think all of apache
would be effected by this vulnerability.
* Revision: 1.17, Tue Jul 8 03:45:28 1997 UTC (6 years, 3 months ago) by akosut
http://cvs.apache.org/viewcvs.cgi/apache-1.3/src/modules/standard/mod_alias.c?rev=1.17&content-type=text/vnd.viewcvs-markup
Have woody's apache patched to mod_alias anything ?
if so, why upstream left it?
--
Regards,
Hideki Yamane mailto:henrich @ iijmio-mail.jp
Reply to: