|
|
Family: Fedora Local Security Checks --> Category: infos
Fedora Core 2 2004-420: httpd Vulnerability Scan
Vulnerability Scan Summary Check for the version of the httpd package
Detailed Explanation for this Vulnerability Test
The remote host is missing the patch for the advisory FEDORA-2004-420 (httpd).
Apache is a powerful, full-featured, efficient, and freely-available
Web server. Apache is also the most popular Web server on the
Internet.
This update includes the fixes for an issue in mod_ssl which could
lead to a bypass of an SSLCipherSuite setting in directory or location
context (CVE CVE-2004-0885), and a memory consumption denial of
service issue in the handling of request header lines (CVE
CVE-2004-0942).
Solution : http://www.fedoranews.org/blog/index.php?p=71
Threat Level: High
Click HERE for more information and discussions on this network vulnerability scan.
|