mod_rewrite vulnerability

Matt_Domsch at Dell.com Matt_Domsch at Dell.com
Sun Nov 27 20:59:45 UTC 2011


A quick look through puppet doesn't show any we have to be concerned about. :-)

--
Matt Domsch
Technology Strategist
Dell | Office of the CTO

-----Original Message-----
From: infrastructure-bounces at lists.fedoraproject.org [mailto:infrastructure-bounces at lists.fedoraproject.org] On Behalf Of Domsch, Matt
Sent: Sunday, November 27, 2011 12:54 PM
To: infrastructure at lists.fedoraproject.org
Subject: mod_rewrite vulnerability

http://www.computerworld.com/s/article/9222160/Unpatched_Apache_flaw_allows_access_to_internal_network

Suggests looking for rewrite rules of hostname$1 and changing to hostname/$1.


--
Matt Domsch
Technology Strategist
Dell | Office of the CTO
_______________________________________________
infrastructure mailing list
infrastructure at lists.fedoraproject.org
https://admin.fedoraproject.org/mailman/listinfo/infrastructure


More information about the infrastructure mailing list