[Bug 355540] VUL-0: Apache mod_negotiation Xss and Http Response Splitting
https://bugzilla.novell.com/show_bug.cgi?id=355540 https://bugzilla.novell.com/show_bug.cgi?id=355540#c7 Marcus Meissner <meissner@suse.com> changed: What |Removed |Added ---------------------------------------------------------------------------- CC| |meissner@suse.com --- Comment #7 from Marcus Meissner <meissner@suse.com> 2011-12-13 14:59:14 UTC --- apparently was fixed in 2.2.12: Changes with Apache 2.2.12 .. *) mod_negotiation: Escape pathes of filenames in 406 responses to avoid HTML injections and HTTP response splitting. PR 46837. [Geoff Keating <geoffk apple.com>] So this is fixed for SLE11 SP1 now. -- Configure bugmail: https://bugzilla.novell.com/userprefs.cgi?tab=email ------- You are receiving this mail because: ------- You are on the CC list for the bug.
participants (1)
-
bugzilla_noreply@novell.com