_______________________________________________________________________
Package : apache
Date : March 2, 2010
Affected: 2008.0, 2009.0, 2009.1, 2010.0, Corporate 4.0,
Enterprise Server 5.0
_______________________________________________________________________
Problem Description:
A vulnerabilitiy has been found and corrected in apache:
mod_proxy_ajp: Respond with HTTP_BAD_REQUEST when the body is not
sent after request headers indicate a request body is incoming;
this is not a case of HTTP_INTERNAL_SERVER_ERROR (CVE-2010-0408).
Packages for 2008.0 are provided for Corporate Desktop 2008.0
customers.
The updated packages have been patched to correct this issue.
_______________________________________________________________________
References:
http://cve.mitre.org/cgi-bin/cvename.cg ... -2010-0408
http://svn.apache.org/viewvc?view=revis ... ion=917876
_______________________________________________________________________