Language Selection

English French German Italian Portuguese Spanish

Apache bug prompts update advice

Filed under

IT security company Sense of Security has discovered a serious bug in Apache's HTTP web server, which could allow a remote attacker to gain complete control of a database.

Discovered by the company's security consultant Brett Gervasoni, the vulnerability exists in Apache's core "mod_isapi" module. By exploiting the module, an attacker could remotely gain system privileges that would compromise data security.

Users of Apache 2.2.14 and earlier are advised to upgrade to Apache 2.2.15, which fixes the exploit.

According to Sense of Security spokesperson Jason Edelstein, Apache is one of the most popular pieces of web server software used today and the vulnerability was one of the most significant bugs in Apache for years.

rest here

More in Tux Machines

GNOME's Evolution Email Client Now Follows the Notification Settings of GNOME Shell

The GNOME developers are still working hard these days on the second milestone of the upcoming GNOME 3.20 desktop environment, which means that we should see more and more updates to various core components and GNOME applications. Read more Also: GNOME Shell and Mutter Updated for GNOME 3.20, Several Bugs Were Fixed

My Open Source Thanksgiving List: Wine, Netflix, OpenWrt and More

Running 3.1 miles through my hometown. Consuming unreasonable quantities of simple carbohydrates, fat and sodium. Pretending that the former activity justifies the latter. These are some of my favorite Thanksgiving traditions. Read more

BlackArch Linux ISO Images Updated with Over 100 New Tools, Multilib Support

The developers of the Arch Linux-based BlackArch GNU/Linux operating system have announced today, November 25, 2015, the immediate availability for download of a new installation media for the distribution. Read more

Snapcraft 0.5 Is Out for Snappy Ubuntu 15.04, Snapcraft 2.0 In Plan for Ubuntu 16.04

Canonical's Sergio Schvezov informs all users of the Snappy Ubuntu Core operating system for embedded and IoT (Internet of Things) devices about the release of the Snapcraft 0.5 snaps creation utility. Read more