Package: libapache2-mod-security
Version: 1.8.7-1
Severity: important

The default SecFilterForceByteRange in
/usr/share/doc/libapache2-mod_security/ is 32 254
which excludes important characters line ASCII 13 ( \r )

The values in the 'minimal' version of the sample config is
"1 255" which includes such characters as \r


-- System Information:
Debian Release: 3.1
  APT prefers unstable
  APT policy: (990, 'unstable')
Architecture: i386 (i686)
Shell:  /bin/sh linked to /bin/bash
Kernel: Linux 2.6.8-2-686
Locale: LANG=C, LC_CTYPE=C (charmap=ANSI_X3.4-1968)

Versions of packages libapache2-mod-security depends on:
ii  apache2-common              2.0.54-4     next generation, scalable, extenda
ii  libc6                       2.3.2.ds1-22 GNU C Library: Shared libraries an
ii  mod-security-common         1.8.7-1      Tighten web applications security 

-- no debconf information


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Reply via email to