[SECURITY] Fedora EPEL 4 Update: mod_fcgid-2.2-11.el4

updates at fedoraproject.org updates at fedoraproject.org
Tue Nov 23 16:53:47 UTC 2010


--------------------------------------------------------------------------------
Fedora EPEL Update Notification
FEDORA-EPEL-2010-3646
2010-11-08 16:03:33
--------------------------------------------------------------------------------

Name        : mod_fcgid
Product     : Fedora EPEL 4
Version     : 2.2
Release     : 11.el4
URL         : http://fastcgi.coremail.cn/
Summary     : Apache2 module for high-performance server-side scripting
Description :
mod_fcgid is a binary-compatible alternative to the Apache module mod_fastcgi.
mod_fcgid has a new process management strategy, which concentrates on reducing
the number of fastcgi servers, and kicking out corrupt fastcgi servers as soon
as possible.

--------------------------------------------------------------------------------
Update Information:

This update includes a back-ported fix from upstream version 2.3.6 addressing a possible stack buffer overwrite (CVE-2010-3872), plus another back-ported fix for making the server return a 500 error code instead of segfaulting if a FastCGI application returns no data for a request.

--------------------------------------------------------------------------------

This update can be installed with the "yum" update programs.  Use
su -c 'yum update mod_fcgid' at the command line.
For more information, refer to "Managing Software with yum",
available at http://docs.fedoraproject.org/yum/.

All packages are signed with the Fedora EPEL GPG key.  More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------


More information about the epel-package-announce mailing list