Title : Debian Security Update Fixes libapache-mod-jk Connector Security Bypass Issue VUPEN ID : VUPEN/ADV-2007-2226 CVE ID : CVE-2007-1860
Rated as : Low Risk
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2007-06-18
Technical Description
A vulnerability has been identified in Debian, which could be exploited by remote attackers to bypass security policies. This issue is caused by an error in libapache-mod-jk. For additional information, see : VUPEN/ADV-2007-1941
Debian GNU/Linux sarge - Upgrade to libapache-mod-jk version 1.2.5-2sarge1
Debian GNU/Linux etch - Upgrade to libapache-mod-jk version 1.2.18-3etch1
Debian GNU/Linux sid - Upgrade to libapache-mod-jk version 1.2.23-1 References