Ubuntu Security Notice USN-2686-1

Discussion in 'News Aggregator' started by Packet Storm, 28 Jul 2015.

  1. Packet Storm

    Packet Storm Guest

    Ubuntu Security Notice 2686-1 - It was discovered that the Apache HTTP Server incorrectly parsed chunk headers. A remote attacker could possibly use this issue to perform HTTP request smuggling attacks. It was discovered that the Apache HTTP Server incorrectly handled the ap_some_auth_required API. A remote attacker could possibly use this issue to bypass intended access restrictions. This issue only affected Ubuntu 14.04 LTS and Ubuntu 15.04. Various other issues were also addressed.

    Continue reading...
     

Share This Page

Loading...