LWN.net Logo

mod_jk: information disclosure

Package(s):mod_jk CVE #(s):CVE-2008-5519
Created:April 24, 2009 Updated:January 12, 2010
Description: From the Red Hat advisory: An information disclosure flaw was found in mod_jk. In certain situations, if a faulty client set the "Content-Length" header without providing data, or if a user sent repeated requests very quickly, one user may view a response intended for another user.
Alerts:
SuSE SUSE-SR:2009:020 2010-01-12
SuSE SUSE-SR:2009:018 2009-11-10
Gentoo 200906-04 2009-06-29
Red Hat RHSA-2009:1087-01 2009-06-09
Debian DSA-1810-1 2009-06-02
Red Hat RHSA-2009:0446-01 2009-04-23

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds