oss-sec mailing list archives

Re: CVE-2020-1927: mod_rewrite configurations vulnerable to open redirect


From: Alan Coopersmith <alan.coopersmith () oracle com>
Date: Fri, 3 Apr 2020 15:19:06 +0000 (UTC)

On 4/1/20 5:54 AM, Daniel Ruggeri wrote:
CVE-2020-1927: mod_rewrite configurations vulnerable to open redirect

Severity: Low

Vendor: The Apache Software Foundation

Versions Affected:
httpd 2.4.0 to 2.4.39

Description:
Apache HTTP Server 2.4.0 to 2.4.41

Should the versions affected have been to .41 as well then?

--
        -Alan Coopersmith-               alan.coopersmith () oracle com
         Oracle Solaris Engineering - https://blogs.oracle.com/alanc


Current thread: