mod_perl: denial of service
| Package(s): | mod_perl | CVE #(s): | CVE-2007-1349 | ||||||||||||||||||||||||||||||||||||||||
| Created: | April 12, 2007 | Updated: | July 18, 2007 | ||||||||||||||||||||||||||||||||||||||||
| Description: | Apache mod_perl versions 1.30 and below have a vulnerability in PerlRun.pm and RegistryCooker.pm. PATH_INFO is not properly escaped before use in a regular expression, allowing remote attackers to cause a denial of service via a specially crafted URI. | ||||||||||||||||||||||||||||||||||||||||||
| Alerts: |
| ||||||||||||||||||||||||||||||||||||||||||
The LWN site is currently under high scraper load, so comment display has been suppressed for anonymous users. If you are a human, you may read the comments by clicking the button below:
Note: you can avoid this step in the future by logging into your LWN account.
