/[Apache-SVN]
ViewVC logotype

Revision 1611185


Jump to revision: Previous Next
Author: wrowe
Date: Wed Jul 16 20:56:51 2014 UTC (9 years, 9 months ago)
Changed paths: 4
Log Message:
SECURITY: CVE-2014-0231

  mod_cgid: Fix a denial of service against CGI scripts that do
  not consume stdin that could lead to lingering HTTPD child processes
  filling up the scoreboard and eventually hanging the server.

Submitted by: Rainer Jung, Eric Covener, Yann Ylavic
Backports: r1610509, r1535125
Reviewed by: covener, trawick, ylavic

Changed paths

Path Details
Directoryhttpd/httpd/branches/2.2.x/CHANGES modified , text changed
Directoryhttpd/httpd/branches/2.2.x/STATUS modified , text changed
Directoryhttpd/httpd/branches/2.2.x/docs/manual/mod/mod_cgid.xml modified , text changed
Directoryhttpd/httpd/branches/2.2.x/modules/generators/mod_cgid.c modified , text changed

infrastructure at apache.org
ViewVC Help
Powered by ViewVC 1.1.26