Files ≈ Packet Storm Packet Storm - Information Security News, Files, Tools, Exploits, Advisories and Whitepapers http://packetstormsecurity.org/ en-us Mon, 28 May 2012 05:59:52 GMT Packet Storm 144400 http://packetstormsecurity.org/ http://www.google-analytics.com/__utm.gif?utmwv=1.3&utmn=2079432190&utmcs=ISO-8859-1&utmsr=31337x31337&utmsc=32-bit&utmul=en-us&utmje=0&utmfl=-&utmcn=1&utmdt=Files%u2248%20Packet%20Storm&utmhn=packetstormsecurity.org&utmr=-&utmp=%2F0907-advisories%2FMDVSA-2009-149.txt%2F&utmac=UA-18885198-1&utmcc=__utma%3D32867617.2079432190.1338184792.1338184792.1338184792.1%3B%2B__utmz%3D32867617.1338184792.1.1.utmccn%3D(direct)%7Cutmcsr%3D(direct)%7Cutmcmd%3D(none) Mandriva Linux Security Advisory 2009-149 http://packetstormsecurity.org/files/79042/MDVSA-2009-149.txt http://packetstormsecurity.org/files/79042/MDVSA-2009-149.txt http://packetstormsecurity.org/files/79042/Mandriva-Linux-Security-Advisory-2009-149.html Thu, 09 Jul 2009 18:00:52 GMT Mandriva Linux Security Advisory 2009-149 - The stream_reqbody_cl function in mod_proxy_http.c in the mod_proxy module in the Apache HTTP Server before 2.3.3, when a reverse proxy is configured, does not properly handle an amount of streamed data that exceeds the Content-Length value, which allows remote attackers to cause a denial of service (CPU consumption) via crafted requests. Fixed a potential Denial-of-Service attack against mod_deflate or other modules, by forcing the server to consume CPU time in compressing a large file after a client disconnects. This update provides fixes for these vulnerabilities.