Does anyone know if apache 1.3 is affected by the issue mentioned at http://www.securityfocus.com/bid/12877 Also, anyone know how Debian stands with this? -- Geoff Crompton Debian System Administrator Strategic Data +61 3 9340 9000