Apache Connection Blocking Denial Of Service Vulnerability
BID:9921
Info
Apache Connection Blocking Denial Of Service Vulnerability
| Bugtraq ID: | 9921 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: |
CVE-2004-0174 |
| Remote: | Yes |
| Local: | No |
| Published: | Mar 19 2004 12:00AM |
| Updated: | Jul 12 2009 03:06AM |
| Credit: | Discovery of this issue is credited to Jeff Trawick. |
| Vulnerable: |
Sun Solaris 9_x86 Sun Solaris 9 Sun Solaris 8_x86 Sun Solaris 8_sparc IBM HTTP Server 2.0.47 IBM HTTP Server 2.0.42 .2 HP Webproxy A.02.10 HP Webproxy A.02.00 HP VirtualVault A.04.70 HP VirtualVault A.04.60 HP VirtualVault A.04.50 HP HP-UX 11.23 HP HP-UX 11.22 HP HP-UX 11.11 HP HP-UX 11.0 Apple Mac OS X Server 10.3.3 Apple Mac OS X Server 10.2.8 Apple Mac OS X 10.3.3 Apple Mac OS X 10.2.8 Apache Apache 2.0.48 Apache Apache 2.0.47 Apache Apache 2.0.46 Apache Apache 2.0.45 Apache Apache 2.0.44 Apache Apache 2.0.43 Apache Apache 2.0.42 Apache Apache 2.0.41 Apache Apache 2.0.40 Apache Apache 2.0.39 Apache Apache 2.0.38 Apache Apache 2.0.37 Apache Apache 2.0.36 Apache Apache 2.0.35 Apache Apache 2.0.32 Apache Apache 2.0.28 Beta Apache Apache 2.0.28 Apache Apache 2.0 a9 Apache Apache 2.0 Apache Apache 1.3.29 Apache Apache 1.3.28 Apache Apache 1.3.27 Apache Apache 1.3.26 Apache Apache 1.3.25 Apache Apache 1.3.24 Apache Apache 1.3.23 Apache Apache 1.3.22 Apache Apache 1.3.20 Apache Apache 1.3.19 Apache Apache 1.3.18 Apache Apache 1.3.17 Apache Apache 1.3.14 Apache Apache 1.3.12 Apache Apache 1.3.11 Apache Apache 1.3.9 Apache Apache 1.3.7 -dev Apache Apache 1.3.6 Apache Apache 1.3.4 Apache Apache 1.3.3 Apache Apache 1.3.1 Apache Apache 1.3 |
| Not Vulnerable: |
Posadis Posadis 1.3.31 Apache Apache 2.0.49 Apache Apache 1.3.31 |
Discussion
Apache Connection Blocking Denial Of Service Vulnerability
Apache is prone to an issue that may permit remote attackers to cause a denial of service issue via a listening socket on a rarely accessed port. This will reportedly block out new connections to the server until another connection on the rarely accessed socket is initiated.
The functionality that exposes this issue is reportedly enabled by default on all platforms except Windows.
Apache is prone to an issue that may permit remote attackers to cause a denial of service issue via a listening socket on a rarely accessed port. This will reportedly block out new connections to the server until another connection on the rarely accessed socket is initiated.
The functionality that exposes this issue is reportedly enabled by default on all platforms except Windows.
Exploit / POC
Apache Connection Blocking Denial Of Service Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
Apache Connection Blocking Denial Of Service Vulnerability
Solution:
This issue is addressed with the release of Apache 2.0.49.
Netwosix Linux has released an advisory dealing with this issue. Please see the reference section for more details.
Trustix has released an advisory that includes updates for this issue.
IBM has released PQ85834 cumulative fix to address this issue in IBM HTTP Server 2.0.42.2 and IBM HTTP Server 2.0.47. Please see the referenced site in web references for more information.
SUSE has released an advisory SuSE-SA:2004:009 to address this and other issues. Please see the advisory for more information.
HP has released security bulletin HPSBUX01022 dealing with this issue as well as fixes for their HP-UX architecture. Please see the referenced advisory for more information and details on obtaining fixes.
Apple has released security advisory APPLE-SA-2004-05-03 dealing with this and other issues. Please see the referenced advisory for more information.
OpenPKG has released an advisory OpenPKG-SA-2004.021 to address this and other issues in Apache. Please see the referenced advisory for more information.
Slackware has released an advisory SSA:2004-133-01 to address this and other issues in Apache. Please see the referenced advisory for more information.
Trustix has released an advisory TSLSA-2004-0027 to address this and other issues in Apache. Please see the referenced advisory for more information.
Mandrake has issued advisory MDKSA-2004:046 and fixes. See reference section for more information.
Mandrake has issued a revised advisory and fixes. See advisory MDKSA-2004:046-1 in the reference section for more information.
Turbolinux has issued advisory TLSA-2004-17 and fixes. See reference section for more information.
HP has released advisory HPSBTU01049 - SSRT4717 dealing with this and other issues. Please see the referenced advisory for more information.
Apache Server version 1.3.31 has been released to address this and other issues.
RedHat has released an advisory (RHSA-2004:405-06) to address various issues in Stronghold. Updated Stronghold 4 packages have been released. RedHat users are advised to upgrade their computers by carrying out the following command to launch the update agent service:
bin/agent
Please see the RedHat advisory in web references for more information.
HP has released an advisory (HPSBUX01069) to address this and other issues. Please see the referenced advisory for more information.
Sun has released an alert (Alert ID: 57628) containing preliminary T-patches to address this and other issues in Apache. Please see the advisory in web references for more information.
Sun has released an update to Sun Alert ID: 57628. Patches for Solaris 9.0 have been made available. Patches for Solaris 8.0 are still pending.
Sun has released an update to Sun Alert ID: 57628. T-Patches (T116973-01, T116974-01) are available through normal support channels for Solaris 8 SPARC platform and Solaris 8 x86 platform. Please see the referenced Sun alert for more information.
Apple has released an advisory (APPLE-SA-2004-12-02) dealing with this and other issues. This security update resolves this issue by installing Apache version 1.3.33, which has been fixed against this issue. Please see the referenced advisory for more information.
Sun Solaris 9
Sun Solaris 9_x86
Apache Apache 1.3
Apache Apache 1.3.1
Apache Apache 1.3.11
Apache Apache 1.3.12
Apache Apache 1.3.14
Apache Apache 1.3.17
Apache Apache 1.3.18
Apache Apache 1.3.19
Apache Apache 1.3.20
Apache Apache 1.3.22
Apache Apache 1.3.23
Apache Apache 1.3.24
Apache Apache 1.3.25
Apache Apache 1.3.26
Apache Apache 1.3.27
Apache Apache 1.3.28
Apache Apache 1.3.29
Apache Apache 1.3.3
Apache Apache 1.3.4
Apache Apache 1.3.6
Apache Apache 1.3.7 -dev
Apache Apache 1.3.9
Apple Mac OS X 10.2.8
Apple Mac OS X Server 10.2.8
Apple Mac OS X 10.3.3
Apple Mac OS X Server 10.3.3
Apache Apache 2.0
Apache Apache 2.0 a9
Apache Apache 2.0.28
Apache Apache 2.0.28 Beta
Apache Apache 2.0.32
Apache Apache 2.0.35
Apache Apache 2.0.36
Apache Apache 2.0.37
Apache Apache 2.0.38
Apache Apache 2.0.39
Apache Apache 2.0.40
Apache Apache 2.0.41
IBM HTTP Server 2.0.42 .2
Apache Apache 2.0.42
Apache Apache 2.0.43
Apache Apache 2.0.44
Apache Apache 2.0.45
Apache Apache 2.0.46
Apache Apache 2.0.47
IBM HTTP Server 2.0.47
Apache Apache 2.0.48
Solution:
This issue is addressed with the release of Apache 2.0.49.
Netwosix Linux has released an advisory dealing with this issue. Please see the reference section for more details.
Trustix has released an advisory that includes updates for this issue.
IBM has released PQ85834 cumulative fix to address this issue in IBM HTTP Server 2.0.42.2 and IBM HTTP Server 2.0.47. Please see the referenced site in web references for more information.
SUSE has released an advisory SuSE-SA:2004:009 to address this and other issues. Please see the advisory for more information.
HP has released security bulletin HPSBUX01022 dealing with this issue as well as fixes for their HP-UX architecture. Please see the referenced advisory for more information and details on obtaining fixes.
Apple has released security advisory APPLE-SA-2004-05-03 dealing with this and other issues. Please see the referenced advisory for more information.
OpenPKG has released an advisory OpenPKG-SA-2004.021 to address this and other issues in Apache. Please see the referenced advisory for more information.
Slackware has released an advisory SSA:2004-133-01 to address this and other issues in Apache. Please see the referenced advisory for more information.
Trustix has released an advisory TSLSA-2004-0027 to address this and other issues in Apache. Please see the referenced advisory for more information.
Mandrake has issued advisory MDKSA-2004:046 and fixes. See reference section for more information.
Mandrake has issued a revised advisory and fixes. See advisory MDKSA-2004:046-1 in the reference section for more information.
Turbolinux has issued advisory TLSA-2004-17 and fixes. See reference section for more information.
HP has released advisory HPSBTU01049 - SSRT4717 dealing with this and other issues. Please see the referenced advisory for more information.
Apache Server version 1.3.31 has been released to address this and other issues.
RedHat has released an advisory (RHSA-2004:405-06) to address various issues in Stronghold. Updated Stronghold 4 packages have been released. RedHat users are advised to upgrade their computers by carrying out the following command to launch the update agent service:
bin/agent
Please see the RedHat advisory in web references for more information.
HP has released an advisory (HPSBUX01069) to address this and other issues. Please see the referenced advisory for more information.
Sun has released an alert (Alert ID: 57628) containing preliminary T-patches to address this and other issues in Apache. Please see the advisory in web references for more information.
Sun has released an update to Sun Alert ID: 57628. Patches for Solaris 9.0 have been made available. Patches for Solaris 8.0 are still pending.
Sun has released an update to Sun Alert ID: 57628. T-Patches (T116973-01, T116974-01) are available through normal support channels for Solaris 8 SPARC platform and Solaris 8 x86 platform. Please see the referenced Sun alert for more information.
Apple has released an advisory (APPLE-SA-2004-12-02) dealing with this and other issues. This security update resolves this issue by installing Apache version 1.3.33, which has been fixed against this issue. Please see the referenced advisory for more information.
Sun Solaris 9
-
Sun T-patch T113146-05.tar.Z
http://sunsolve.sun.com/pub-cgi/show.pl?target=security/tpatches -
Sun 113146-05
http://sunsolve.sun.com/search/pdownload.pl?target=113146-05&method=hs
Sun Solaris 9_x86
-
Sun T-patch T114145-04.tar.Z
http://sunsolve.sun.com/pub-cgi/show.pl?target=security/tpatches -
Sun 114145-04
http://sunsolve.sun.com/search/pdownload.pl?target=114145-04&method=hs
Apache Apache 1.3
-
Apache Software Foundation apache 1.3.31
http://httpd.apache.org/download.cgi
Apache Apache 1.3.1
-
Apache Software Foundation apache 1.3.31
http://httpd.apache.org/download.cgi
Apache Apache 1.3.11
-
Apache Software Foundation apache 1.3.31
http://httpd.apache.org/download.cgi
Apache Apache 1.3.12
-
Apache Software Foundation apache 1.3.31
http://httpd.apache.org/download.cgi
Apache Apache 1.3.14
-
Apache Software Foundation apache 1.3.31
http://httpd.apache.org/download.cgi
Apache Apache 1.3.17
-
Apache Software Foundation apache 1.3.31
http://httpd.apache.org/download.cgi
Apache Apache 1.3.18
-
Apache Software Foundation apache 1.3.31
http://httpd.apache.org/download.cgi
Apache Apache 1.3.19
-
Apache Software Foundation apache 1.3.31
http://httpd.apache.org/download.cgi
Apache Apache 1.3.20
-
Apache Software Foundation apache 1.3.31
http://httpd.apache.org/download.cgi
Apache Apache 1.3.22
-
Apache Software Foundation apache 1.3.31
http://httpd.apache.org/download.cgi
Apache Apache 1.3.23
-
Apache Software Foundation apache 1.3.31
http://httpd.apache.org/download.cgi
Apache Apache 1.3.24
-
Apache Software Foundation apache 1.3.31
http://httpd.apache.org/download.cgi
Apache Apache 1.3.25
-
Apache Software Foundation apache 1.3.31
http://httpd.apache.org/download.cgi
Apache Apache 1.3.26
-
Apache Software Foundation apache 1.3.31
http://httpd.apache.org/download.cgi -
Mandrake apache-mod_perl-1.3.26_1.27-7.1.C21mdk.i586.rpm
Mandrake Corporate Server 2.1
http://www.mandrakesecure.net/en/ftp.php -
Mandrake apache-mod_perl-1.3.26_1.27-7.1.C21mdk.x86_64.rpm
Mandrake Corporate Server 2.1/X86_64
http://www.mandrakesecure.net/en/ftp.php -
Mandrake HTML-Embperl-1.3.26_1.3.4-7.1.C21mdk.i586.rpm
Mandrake Corporate Server 2.1
http://www.mandrakesecure.net/en/ftp.php -
Mandrake HTML-Embperl-1.3.26_1.3.4-7.1.C21mdk.x86_64.rpm
Mandrake Corporate Server 2.1/X86_64
http://www.mandrakesecure.net/en/ftp.php -
Mandrake mod_perl-common-1.3.26_1.27-7.1.C21mdk.i586.rpm
Mandrake Corporate Server 2.1
http://www.mandrakesecure.net/en/ftp.php -
Mandrake mod_perl-common-1.3.26_1.27-7.1.C21mdk.x86_64.rpm
Mandrake Corporate Server 2.1/X86_64
http://www.mandrakesecure.net/en/ftp.php -
Mandrake mod_perl-devel-1.3.26_1.27-7.1.C21mdk.i586.rpm
Mandrake Corporate Server 2.1
http://www.mandrakesecure.net/en/ftp.php -
Mandrake mod_perl-devel-1.3.26_1.27-7.1.C21mdk.x86_64.rpm
Mandrake Corporate Server 2.1/X86_64
http://www.mandrakesecure.net/en/ftp.php
Apache Apache 1.3.27
-
Apache Software Foundation apache 1.3.31
http://httpd.apache.org/download.cgi -
Mandrake apache-mod_perl-1.3.27_1.27-7.1.91mdk.i586.rpm
Mandrake Linux 9.1
http://www.mandrakesecure.net/en/ftp.php -
Mandrake apache-mod_perl-1.3.27_1.27-7.1.91mdk.ppc.rpm
Mandrake Linux 9.1/PPC
http://www.mandrakesecure.net/en/ftp.php -
Mandrake HTML-Embperl-1.3.27_1.3.4-7.1.91mdk.i586.rpm
Mandrake Linux 9.1
http://www.mandrakesecure.net/en/ftp.php -
Mandrake HTML-Embperl-1.3.27_1.3.4-7.1.91mdk.ppc.rpm
Mandrake Linux 9.1/PPC
http://www.mandrakesecure.net/en/ftp.php -
Mandrake mod_perl-common-1.3.27_1.27-7.1.91mdk.i586.rpm
Mandrake Linux 9.1
http://www.mandrakesecure.net/en/ftp.php -
Mandrake mod_perl-common-1.3.27_1.27-7.1.91mdk.ppc.rpm
Mandrake Linux 9.1/PPC
http://www.mandrakesecure.net/en/ftp.php -
Mandrake mod_perl-devel-1.3.27_1.27-7.1.91mdk.i586.rpm
Mandrake Linux 9.1
http://www.mandrakesecure.net/en/ftp.php -
Mandrake mod_perl-devel-1.3.27_1.27-7.1.91mdk.ppc.rpm
Mandrake Linux 9.1/PPC
http://www.mandrakesecure.net/en/ftp.php -
TurboLinux apache-1.3.27-23.i386.rpm
Turbolinux Advanced Server 6
ftp://ftp.turbolinux.com/pub/TurboLinux/TurboLinux/ia32/AdvancedServer /6/ja/updates/RPMS/apache-1.3.27-23.i386.rpm -
TurboLinux apache-1.3.27-23.i386.rpm
Turbolinux Server 6.1
ftp://ftp.turbolinux.com/pub/TurboLinux/TurboLinux/ia32/Server/6.1/ja/ updates/RPMS/apache-1.3.27-23.i386.rpm -
TurboLinux apache-1.3.27-23.i386.rpm
Turbolinux Server 6.5
ftp://ftp.turbolinux.com/pub/TurboLinux/TurboLinux/ia32/Server/6.5/upd ates/RPMS/apache-1.3.27-23.i386.rpm -
TurboLinux apache-1.3.27-23.i386.rpm
Turbolinux Workstation 6.0
ftp://ftp.turbolinux.com/pub/TurboLinux/TurboLinux/ia32/Workstation/6. 0/ja/updates/RPMS/apache-1.3.27-23.i386.rpm -
TurboLinux apache-1.3.27-23.i586.rpm
Turbolinux 7 Server
ftp://ftp.turbolinux.com/pub/TurboLinux/TurboLinux/ia32/Server/7/updat es/RPMS/apache-1.3.27-23.i586.rpm -
TurboLinux apache-1.3.27-23.i586.rpm
Turbolinux 8 Server
ftp://ftp.turbolinux.com/pub/TurboLinux/TurboLinux/ia32/Server/8/updat es/RPMS/apache-1.3.27-23.i586.rpm -
TurboLinux apache-1.3.27-23.i586.rpm
Turbolinux 7 Workstation
ftp://ftp.turbolinux.com/pub/TurboLinux/TurboLinux/ia32/Workstation/7/ updates/RPMS/apache-1.3.27-23.i586.rpm -
TurboLinux apache-1.3.27-23.i586.rpm
Turbolinux 8 Workstation
ftp://ftp.turbolinux.com/pub/TurboLinux/TurboLinux/ia32/Workstation/8/ updates/RPMS/apache-1.3.27-23.i586.rpm -
TurboLinux apache-devel-1.3.27-23.i386.rpm
Turbolinux Advanced Server 6
ftp://ftp.turbolinux.com/pub/TurboLinux/TurboLinux/ia32/AdvancedServer /6/ja/updates/RPMS/apache-devel-1.3.27-23.i386.rpm -
TurboLinux apache-devel-1.3.27-23.i386.rpm
Turbolinux Server 6.1
ftp://ftp.turbolinux.com/pub/TurboLinux/TurboLinux/ia32/Server/6.1/ja/ updates/RPMS/apache-devel-1.3.27-23.i386.rpm -
TurboLinux apache-devel-1.3.27-23.i386.rpm
Turbolinux Server 6.5
ftp://ftp.turbolinux.com/pub/TurboLinux/TurboLinux/ia32/Server/6.5/upd ates/RPMS/apache-devel-1.3.27-23.i386.rpm -
TurboLinux apache-devel-1.3.27-23.i386.rpm
Turbolinux Workstation 6.0
ftp://ftp.turbolinux.com/pub/TurboLinux/TurboLinux/ia32/Workstation/6. 0/ja/updates/RPMS/apache-devel-1.3.27-23.i386.rpm -
TurboLinux apache-devel-1.3.27-23.i586.rpm
Turbolinux 7 Server
ftp://ftp.turbolinux.com/pub/TurboLinux/TurboLinux/ia32/Server/7/updat es/RPMS/apache-devel-1.3.27-23.i586.rpm -
TurboLinux apache-devel-1.3.27-23.i586.rpm
Turbolinux 8 Server
ftp://ftp.turbolinux.com/pub/TurboLinux/TurboLinux/ia32/Server/8/updat es/RPMS/apache-devel-1.3.27-23.i586.rpm -
TurboLinux apache-devel-1.3.27-23.i586.rpm
Turbolinux 8 Workstation
ftp://ftp.turbolinux.com/pub/TurboLinux/TurboLinux/ia32/Workstation/8/ updates/RPMS/apache-devel-1.3.27-23.i586.rpm -
TurboLinux apache-manual-1.3.27-23.i386.rpm
Turbolinux Advanced Server 6
ftp://ftp.turbolinux.com/pub/TurboLinux/TurboLinux/ia32/AdvancedServer /6/ja/updates/RPMS/apache-manual-1.3.27-23.i386.rpm -
TurboLinux apache-manual-1.3.27-23.i386.rpm
Turbolinux Server 6.1
ftp://ftp.turbolinux.com/pub/TurboLinux/TurboLinux/ia32/Server/6.1/ja/ updates/RPMS/apache-manual-1.3.27-23.i386.rpm -
TurboLinux apache-manual-1.3.27-23.i386.rpm
Turbolinux Server 6.5
ftp://ftp.turbolinux.com/pub/TurboLinux/TurboLinux/ia32/Server/6.5/upd ates/RPMS/apache-manual-1.3.27-23.i386.rpm -
TurboLinux apache-manual-1.3.27-23.i386.rpm
Turbolinux Workstation 6.0
ftp://ftp.turbolinux.com/pub/TurboLinux/TurboLinux/ia32/Workstation/6. 0/ja/updates/RPMS/apache-manual-1.3.27-23.i386.rpm -
TurboLinux apache-manual-1.3.27-23.i586.rpm
Turbolinux 7 Server
ftp://ftp.turbolinux.com/pub/TurboLinux/TurboLinux/ia32/Server/7/updat es/RPMS/apache-manual-1.3.27-23.i586.rpm -
TurboLinux apache-manual-1.3.27-23.i586.rpm
Turbolinux 8 Server
ftp://ftp.turbolinux.com/pub/TurboLinux/TurboLinux/ia32/Server/8/updat es/RPMS/apache-manual-1.3.27-23.i586.rpm -
TurboLinux apache-manual-1.3.27-23.i586.rpm
Turbolinux 7 Workstation
ftp://ftp.turbolinux.com/pub/TurboLinux/TurboLinux/ia32/Workstation/7/ updates/RPMS/apache-manual-1.3.27-23.i586.rpm -
TurboLinux apache-manual-1.3.27-23.i586.rpm
Turbolinux 8 Workstation
ftp://ftp.turbolinux.com/pub/TurboLinux/TurboLinux/ia32/Workstation/8/ updates/RPMS/apache-manual-1.3.27-23.i586.rpm -
TurboLinux mod_ssl-2.8.14-23.i386.rpm
Turbolinux Advanced Server 6
ftp://ftp.turbolinux.com/pub/TurboLinux/TurboLinux/ia32/AdvancedServer /6/ja/updates/RPMS/mod_ssl-2.8.14-23.i386.rpm -
TurboLinux mod_ssl-2.8.14-23.i386.rpm
Turbolinux Server 6.1
ftp://ftp.turbolinux.com/pub/TurboLinux/TurboLinux/ia32/Server/6.1/ja/ updates/RPMS/mod_ssl-2.8.14-23.i386.rpm -
TurboLinux mod_ssl-2.8.14-23.i386.rpm
Turbolinux Server 6.5
ftp://ftp.turbolinux.com/pub/TurboLinux/TurboLinux/ia32/Server/6.5/upd ates/RPMS/mod_ssl-2.8.14-23.i386.rpm -
TurboLinux mod_ssl-2.8.14-23.i586.rpm
Turbolinux 7 Server
ftp://ftp.turbolinux.com/pub/TurboLinux/TurboLinux/ia32/Server/7/updat es/RPMS/mod_ssl-2.8.14-23.i586.rpm -
TurboLinux mod_ssl-2.8.14-23.i586.rpm
Turbolinux 8 Server
ftp://ftp.turbolinux.com/pub/TurboLinux/TurboLinux/ia32/Server/8/updat es/RPMS/mod_ssl-2.8.14-23.i586.rpm -
TurboLinux mod_ssl-2.8.14-23.i586.rpm
Turbolinux 7 Workstation
ftp://ftp.turbolinux.com/pub/TurboLinux/TurboLinux/ia32/Workstation/7/ updates/RPMS/mod_ssl-2.8.14-23.i586.rpm -
TurboLinux mod_ssl-2.8.14-23.i586.rpm
Turbolinux 8 Workstation
ftp://ftp.turbolinux.com/pub/TurboLinux/TurboLinux/ia32/Workstation/8/ updates/RPMS/mod_ssl-2.8.14-23.i586.rpm
Apache Apache 1.3.28
-
Apache Software Foundation apache 1.3.31
http://httpd.apache.org/download.cgi -
Conectiva apache-1.3.28-1U80_3cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/8/RPMS/apache-1.3.28-1U80_3cl.i386 .rpm -
Conectiva apache-devel-1.3.28-1U80_3cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/8/RPMS/apache-devel-1.3.28-1U80_3c l.i386.rpm -
Conectiva apache-doc-1.3.28-1U80_3cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/8/RPMS/apache-doc-1.3.28-1U80_3cl. i386.rpm -
Mandrake apache-mod_perl-1.3.28_1.28-1.1.92mdk.amd64.rpm
Mandrake Linux 9.2/AMD64
http://www.mandrakesecure.net/en/ftp.php -
Mandrake apache-mod_perl-1.3.28_1.28-1.1.92mdk.i586.rpm
Mandrake Linux 9.2
http://www.mandrakesecure.net/en/ftp.php -
Mandrake HTML-Embperl-1.3.28_1.3.4-1.1.92mdk.amd64.rpm
Mandrake Linux 9.2/AMD64
http://www.mandrakesecure.net/en/ftp.php -
Mandrake HTML-Embperl-1.3.28_1.3.4-1.1.92mdk.i586.rpm
Mandrake Linux 9.2
http://www.mandrakesecure.net/en/ftp.php -
Mandrake mod_perl-common-1.3.28_1.28-1.1.92mdk.amd64.rpm
Mandrake Linux 9.2/AMD64
http://www.mandrakesecure.net/en/ftp.php -
Mandrake mod_perl-common-1.3.28_1.28-1.1.92mdk.i586.rpm
Mandrake Linux 9.2
http://www.mandrakesecure.net/en/ftp.php -
Mandrake mod_perl-devel-1.3.28_1.28-1.1.92mdk.amd64.rpm
Mandrake Linux 9.2/AMD64
http://www.mandrakesecure.net/en/ftp.php -
Mandrake mod_perl-devel-1.3.28_1.28-1.1.92mdk.i586.rpm
Mandrake Linux 9.2
http://www.mandrakesecure.net/en/ftp.php
Apache Apache 1.3.29
-
Apache Software Foundation apache 1.3.31
http://httpd.apache.org/download.cgi -
Apple SecUpd2004-12-02Jag.dmg
For Mac OS X v10.2.8:
http://www.apple.com/support/downloads/SecUpd2004-12-02Jag.dmg -
Apple SecUpd2004-12-02Pan.dmg
For Mac OS X v10.3.6:
http://www.apple.com/support/downloads/SecUpd2004-12-02Pan.dmg -
Apple SecUpdSrvr2004-12-02Jag.dmg
For Mac OS X Server v10.2.8:
http://www.apple.com/support/downloads/SecUpdSrvr2004-12-02Jag.dmg -
Apple SecUpdSrvr2004-12-02Pan.dmg
For Mac OS X Server v10.3.6:
http://www.apple.com/support/downloads/SecUpdSrvr2004-12-02Pan.dmg -
Mandrake apache-mod_perl-1.3.29_1.29-3.1.100mdk.amd64.rpm
Mandrake Linux 10.0/AMD64
http://www.mandrakesecure.net/en/ftp.php -
Mandrake apache-mod_perl-1.3.29_1.29-3.1.100mdk.i586.rpm
Mandrake Linux 10.0
http://www.mandrakesecure.net/en/ftp.php -
Mandrake HTML-Embperl-1.3.29_1.3.6-3.1.100mdk.amd64.rpm
Mandrake Linux 10.0/AMD64
http://www.mandrakesecure.net/en/ftp.php -
Mandrake HTML-Embperl-1.3.29_1.3.6-3.1.100mdk.i586.rpm
Mandrake Linux 10.0
http://www.mandrakesecure.net/en/ftp.php -
Mandrake mod_perl-common-1.3.29_1.29-3.1.100mdk.amd64.rpm
Mandrake Linux 10.0/AMD64
http://www.mandrakesecure.net/en/ftp.php -
Mandrake mod_perl-common-1.3.29_1.29-3.1.100mdk.i586.rpm
Mandrake Linux 10.0
http://www.mandrakesecure.net/en/ftp.php -
Mandrake mod_perl-devel-1.3.29_1.29-3.1.100mdk.amd64.rpm
Mandrake Linux 10.0/AMD64
http://www.mandrakesecure.net/en/ftp.php -
Mandrake mod_perl-devel-1.3.29_1.29-3.1.100mdk.i586.rpm
Mandrake Linux 10.0
http://www.mandrakesecure.net/en/ftp.php -
Slackware apache-1.3.29-i386-2.tgz
Updated package for Slackware 8.1:
ftp://ftp.slackware.com/pub/slackware/slackware-8.1/patches/packages/a pache-1.3.29-i386-2.tgz -
Slackware apache-1.3.29-i386-2.tgz for Slackware 9.0
Updated package for Slackware 9.0
ftp://ftp.slackware.com/pub/slackware/slackware-9.0/patches/packages/a pache-1.3.29-i386-2.tgz -
Slackware apache-1.3.29-i486-2.tgz
Updated package for Slackware 9.1
ftp://ftp.slackware.com/pub/slackware/slackware-9.1/patches/packages/a pache-1.3.29-i486-2.tgz
Apache Apache 1.3.3
-
Apache Software Foundation apache 1.3.31
http://httpd.apache.org/download.cgi
Apache Apache 1.3.4
-
Apache Software Foundation apache 1.3.31
http://httpd.apache.org/download.cgi
Apache Apache 1.3.6
-
Apache Software Foundation apache 1.3.31
http://httpd.apache.org/download.cgi
Apache Apache 1.3.7 -dev
-
Apache Software Foundation apache 1.3.31
http://httpd.apache.org/download.cgi
Apache Apache 1.3.9
-
Apache Software Foundation apache 1.3.31
http://httpd.apache.org/download.cgi
Apple Mac OS X 10.2.8
-
Apple SecUpd2004-05-03Jag.dmg
http://download.info.apple.com/Mac_OS_X/061-1217.20040503.BmkY5/2Z/Sec Upd2004-05-03Jag.dmg -
Apple SecUpd2004-05-03Pan.dmg
http://download.info.apple.com/Mac_OS_X/061-1213.20040503.vngr3/2Z/Sec Upd2004-05-03Pan.dmg -
Apple SecUpdSrvr2004-05-03Jag.dmg
http://download.info.apple.com/Mac_OS_X/061-1219.20040503.Zsw3S/2Z/Sec UpdSrvr2004-05-03Jag.dmg -
Apple SecUpdSrvr2004-05-03Pan.dmg
http://download.info.apple.com/Mac_OS_X/061-1215.20040503.mPp9k/2Z/Sec UpdSrvr2004-05-03Pan.dmg -
Apple SecUpd2004-12-02Jag.dmg
For Mac OS X v10.2.8:
http://www.apple.com/support/downloads/SecUpd2004-12-02Jag.dmg -
Apple SecUpd2004-12-02Pan.dmg
For Mac OS X v10.3.6:
http://www.apple.com/support/downloads/SecUpd2004-12-02Pan.dmg -
Apple SecUpdSrvr2004-12-02Jag.dmg
For Mac OS X Server v10.2.8:
http://www.apple.com/support/downloads/SecUpdSrvr2004-12-02Jag.dmg -
Apple SecUpdSrvr2004-12-02Pan.dmg
For Mac OS X Server v10.3.6:
http://www.apple.com/support/downloads/SecUpdSrvr2004-12-02Pan.dmg
Apple Mac OS X Server 10.2.8
-
Apple SecUpd2004-05-03Jag.dmg
http://download.info.apple.com/Mac_OS_X/061-1217.20040503.BmkY5/2Z/Sec Upd2004-05-03Jag.dmg -
Apple SecUpd2004-05-03Pan.dmg
http://download.info.apple.com/Mac_OS_X/061-1213.20040503.vngr3/2Z/Sec Upd2004-05-03Pan.dmg -
Apple SecUpdSrvr2004-05-03Jag.dmg
http://download.info.apple.com/Mac_OS_X/061-1219.20040503.Zsw3S/2Z/Sec UpdSrvr2004-05-03Jag.dmg -
Apple SecUpdSrvr2004-05-03Pan.dmg
http://download.info.apple.com/Mac_OS_X/061-1215.20040503.mPp9k/2Z/Sec UpdSrvr2004-05-03Pan.dmg -
Apple SecUpd2004-12-02Jag.dmg
For Mac OS X v10.2.8:
http://www.apple.com/support/downloads/SecUpd2004-12-02Jag.dmg -
Apple SecUpd2004-12-02Pan.dmg
For Mac OS X v10.3.6:
http://www.apple.com/support/downloads/SecUpd2004-12-02Pan.dmg -
Apple SecUpdSrvr2004-12-02Jag.dmg
For Mac OS X Server v10.2.8:
http://www.apple.com/support/downloads/SecUpdSrvr2004-12-02Jag.dmg -
Apple SecUpdSrvr2004-12-02Pan.dmg
For Mac OS X Server v10.3.6:
http://www.apple.com/support/downloads/SecUpdSrvr2004-12-02Pan.dmg
Apple Mac OS X 10.3.3
-
Apple SecUpd2004-05-03Jag.dmg
http://download.info.apple.com/Mac_OS_X/061-1217.20040503.BmkY5/2Z/Sec Upd2004-05-03Jag.dmg -
Apple SecUpd2004-05-03Pan.dmg
http://download.info.apple.com/Mac_OS_X/061-1213.20040503.vngr3/2Z/Sec Upd2004-05-03Pan.dmg -
Apple SecUpdSrvr2004-05-03Jag.dmg
http://download.info.apple.com/Mac_OS_X/061-1219.20040503.Zsw3S/2Z/Sec UpdSrvr2004-05-03Jag.dmg -
Apple SecUpdSrvr2004-05-03Pan.dmg
http://download.info.apple.com/Mac_OS_X/061-1215.20040503.mPp9k/2Z/Sec UpdSrvr2004-05-03Pan.dmg -
Apple SecUpd2004-12-02Jag.dmg
For Mac OS X v10.2.8:
http://www.apple.com/support/downloads/SecUpd2004-12-02Jag.dmg
Apple Mac OS X Server 10.3.3
-
Apple SecUpd2004-05-03Jag.dmg
http://download.info.apple.com/Mac_OS_X/061-1217.20040503.BmkY5/2Z/Sec Upd2004-05-03Jag.dmg -
Apple SecUpd2004-05-03Pan.dmg
http://download.info.apple.com/Mac_OS_X/061-1213.20040503.vngr3/2Z/Sec Upd2004-05-03Pan.dmg -
Apple SecUpdSrvr2004-05-03Jag.dmg
http://download.info.apple.com/Mac_OS_X/061-1219.20040503.Zsw3S/2Z/Sec UpdSrvr2004-05-03Jag.dmg -
Apple SecUpdSrvr2004-05-03Pan.dmg
http://download.info.apple.com/Mac_OS_X/061-1215.20040503.mPp9k/2Z/Sec UpdSrvr2004-05-03Pan.dmg
Apache Apache 2.0
-
Apache Software Foundation Apache httpd 2.0.49
http://httpd.apache.org/download.cgi
Apache Apache 2.0 a9
-
Apache Software Foundation Apache httpd 2.0.49
http://httpd.apache.org/download.cgi
Apache Apache 2.0.28
-
Apache Software Foundation Apache httpd 2.0.49
http://httpd.apache.org/download.cgi
Apache Apache 2.0.28 Beta
-
Apache Software Foundation Apache httpd 2.0.49
http://httpd.apache.org/download.cgi
Apache Apache 2.0.32
-
Apache Software Foundation Apache httpd 2.0.49
http://httpd.apache.org/download.cgi
Apache Apache 2.0.35
-
Apache Software Foundation Apache httpd 2.0.49
http://httpd.apache.org/download.cgi
Apache Apache 2.0.36
-
Apache Software Foundation Apache httpd 2.0.49
http://httpd.apache.org/download.cgi
Apache Apache 2.0.37
-
Apache Software Foundation Apache httpd 2.0.49
http://httpd.apache.org/download.cgi
Apache Apache 2.0.38
-
Apache Software Foundation Apache httpd 2.0.49
http://httpd.apache.org/download.cgi
Apache Apache 2.0.39
-
Apache Software Foundation Apache httpd 2.0.49
http://httpd.apache.org/download.cgi
Apache Apache 2.0.40
-
Apache Software Foundation Apache httpd 2.0.49
http://httpd.apache.org/download.cgi
Apache Apache 2.0.41
-
Apache Software Foundation Apache httpd 2.0.49
http://httpd.apache.org/download.cgi
IBM HTTP Server 2.0.42 .2
Apache Apache 2.0.42
-
Apache Software Foundation Apache httpd 2.0.49
http://httpd.apache.org/download.cgi
Apache Apache 2.0.43
-
Apache Software Foundation Apache httpd 2.0.49
http://httpd.apache.org/download.cgi
Apache Apache 2.0.44
-
Apache Software Foundation Apache httpd 2.0.49
http://httpd.apache.org/download.cgi
Apache Apache 2.0.45
-
Apache Software Foundation Apache httpd 2.0.49
http://httpd.apache.org/download.cgi -
Conectiva apache-2.0.45-28790U90_6cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/9/RPMS/apache-2.0.45-28790U90_6cl. i386.rpm -
Conectiva apache-devel-2.0.45-28790U90_6cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/9/RPMS/apache-devel-2.0.45-28790U9 0_6cl.i386.rpm -
Conectiva apache-doc-2.0.45-28790U90_6cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/9/RPMS/apache-doc-2.0.45-28790U90_ 6cl.i386.rpm -
Conectiva apache-htpasswd-2.0.45-28790U90_6cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/9/RPMS/apache-htpasswd-2.0.45-2879 0U90_6cl.i386.rpm -
Conectiva libapr-devel-2.0.45-28790U90_6cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/9/RPMS/libapr-devel-2.0.45-28790U9 0_6cl.i386.rpm -
Conectiva libapr-devel-static-2.0.45-28790U90_6cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/9/RPMS/libapr-devel-static-2.0.45- 28790U90_6cl.i386.rpm -
Conectiva libapr0-2.0.45-28790U90_6cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/9/RPMS/libapr0-2.0.45-28790U90_6cl .i386.rpm -
Conectiva mod_auth_ldap-2.0.45-28790U90_6cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/9/RPMS/mod_auth_ldap-2.0.45-28790U 90_6cl.i386.rpm -
Conectiva mod_dav-2.0.45-28790U90_6cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/9/RPMS/mod_dav-2.0.45-28790U90_6cl .i386.rpm
Apache Apache 2.0.46
-
Apache Software Foundation Apache httpd 2.0.49
http://httpd.apache.org/download.cgi
Apache Apache 2.0.47
-
Apache Software Foundation Apache httpd 2.0.49
http://httpd.apache.org/download.cgi -
Apple SecUpd2004-12-02Jag.dmg
For Mac OS X v10.2.8:
http://www.apple.com/support/downloads/SecUpd2004-12-02Jag.dmg -
Apple SecUpd2004-12-02Pan.dmg
For Mac OS X v10.3.6:
http://www.apple.com/support/downloads/SecUpd2004-12-02Pan.dmg -
Apple SecUpdSrvr2004-12-02Jag.dmg
For Mac OS X Server v10.2.8:
http://www.apple.com/support/downloads/SecUpdSrvr2004-12-02Jag.dmg -
Apple SecUpdSrvr2004-12-02Pan.dmg
For Mac OS X Server v10.3.6:
http://www.apple.com/support/downloads/SecUpdSrvr2004-12-02Pan.dmg
IBM HTTP Server 2.0.47
Apache Apache 2.0.48
-
Apache Software Foundation Apache httpd 2.0.49
http://httpd.apache.org/download.cgi -
Trustix apache-2.0.49-1tr.i586.rpm
ftp://ftp.trustix.org/pub/trustix/updates/2.0/rpms/apache-2.0.49-1tr.i 586.rpm -
Trustix apache-2.0.49-2tr.i586.rpm
ftp://ftp.trustix.org/pub/trustix/updates/2.1/rpms/apache-2.0.49-2tr.i 586.rpm -
Trustix apache-dbm-2.0.49-2tr.i586.rpm
ftp://ftp.trustix.org/pub/trustix/updates/2.1/rpms/apache-dbm-2.0.49-2 tr.i586.rpm -
Trustix apache-devel-2.0.49-1tr.i586.rpm
ftp://ftp.trustix.org/pub/trustix/updates/2.0/rpms/apache-devel-2.0.49 -1tr.i586.rpm -
Trustix apache-devel-2.0.49-2tr.i586.rpm
ftp://ftp.trustix.org/pub/trustix/updates/2.1/rpms/apache-devel-2.0.49 -2tr.i586.rpm -
Trustix apache-manual-2.0.49-1tr.i586.rpm
ftp://ftp.trustix.org/pub/trustix/updates/2.0/rpms/apache-manual-2.0.4 9-1tr.i586.rpm -
Trustix apache-manual-2.0.49-2tr.i586.rpm
ftp://ftp.trustix.org/pub/trustix/updates/2.1/rpms/apache-manual-2.0.4 9-2tr.i586.rpm
References
Apache Connection Blocking Denial Of Service Vulnerability
References:
References:
- Apache Homepage (Apache Software Foundation)
- PQ85834; 2.0.47: PQ85834 cumulative fix for IBM HTTP Server V2.0.47 and V2.0.42 (IBM)
- RHSA-2004:405-06 - Stronghold 4: New release fixes Apache, mod_ssl, and PHP (RedHat)
- Sun Alert ID: 57628 (Sun)