/[Apache-SVN]
ViewVC logotype

Revision 1610512


Jump to revision: Previous Next
Author: covener
Date: Mon Jul 14 20:18:26 2014 UTC (9 years, 10 months ago)
Changed paths: 3
Log Message:
merge r1535125 and r1610509 from trunk:

    *) SECURITY: CVE-2014-0231 (cve.mitre.org)
       mod_cgid: Fix a denial of service against CGI scripts that do
       not consume stdin that could lead to lingering HTTPD child processes
       filling up the scoreboard and eventually hanging the server.
       [Rainer Jung, Eric Covener, Yann Ylavic]

Submitted By: rjung, covener, ylavic
Reviewed By: trawick, jorton, covener, jim




Changed paths

Path Details
Directoryhttpd/httpd/branches/2.4.x/CHANGES modified , text changed
Directoryhttpd/httpd/branches/2.4.x/docs/manual/mod/mod_cgid.xml modified , text changed
Directoryhttpd/httpd/branches/2.4.x/modules/generators/mod_cgid.c modified , text changed

infrastructure at apache.org
ViewVC Help
Powered by ViewVC 1.1.26