[Bug 231728] CVE-2007-1359: mod_security <= 2.1.0 request rule bypass

bugzilla at redhat.com bugzilla at redhat.com
Mon Mar 12 11:42:37 UTC 2007


Please do not reply directly to this email. All additional
comments should be made in the comments box of this bug report.

Summary: CVE-2007-1359: mod_security <= 2.1.0 request rule bypass


https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=231728





------- Additional Comments From mfleming+rpm at enlartenment.com  2007-03-12 07:42 EST -------
Packages with the aforementioned suggestion (%config not %config(noreplace))
have been uploaded (same location as the previous set, release is 2.1.0-0.4 this
time around).

If there's no niggles or issues I'll fold this into CVS devel so the
bleeding-edge users can give it a whirl, before unleashing it on the general public.

-- 
Configure bugmail: https://bugzilla.redhat.com/bugzilla/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are on the CC list for the bug, or are watching someone who is.




More information about the security mailing list