Re: [EMAIL PROTECTED] Patch for Apache 2.0.54 Request Smuggling Vulnerability

2005-07-08 Thread Aman Raheja
Do we expect a public availability of 2.0.55 on apache's website which has the bug fix for http://www.securityfocus.com/bid/14106 SecurityFocus says it is available in svn repository but all I find, updated 2 hours back is that the vulnerability has been assigned a CAN (http://svn.apache.org/vie

Re: [EMAIL PROTECTED] Patch for Apache 2.0.54 Request Smuggling Vulnerability

2005-07-06 Thread Aman Raheja
I was looking the other day - I think 2 days back and did not see it either. Moreover this changelog talks about apache 2.0.55, with some security fix and some more stuff, but 2.0.55 is not yet released, though it does not list to be addressing the security issues Lucas has pointed out. http://

[EMAIL PROTECTED] Patch for Apache 2.0.54 Request Smuggling Vulnerability

2005-07-06 Thread Lucas Brasilino
Hi! I've been looking around to find the patch to apache 2.0.54 which corrects the vulnerability pointed out by SecurityFocus at: http://www.securityfocus.com/bid/14106 It says that this patch is available at SVN repository... but I didn't find it. Where can I get it? Thanks in advance. -- []