apache: add fix for CVE-2014-0117 Security Advisory
The patch comes from upstream: http://svn.apache.org/viewvc?view=revision&revision=1610674 SECURITY (CVE-2014-0117): Fix a crash in mod_proxy. In a reverse proxy configuration, a remote attacker could send a carefully crafted request which could crash a server process, resulting in denial of service. Thanks to Marek Kroemeke working with HP's Zero Day Initiative for reporting this issue. Submitted by: Edward Lu, breser, covener Signed-off-by:Zhang Xiao <xiao.zhang@windriver.com> Signed-off-by:
Kai Kang <kai.kang@windriver.com>
parent
6aee5729
Please register or sign in to comment