Re: [users@httpd] Re: CVE-2019-0211 - Apache 2.2

2019-04-03 Thread Hajo Locke
Hello, Am 03.04.2019 um 11:06 schrieb Rainer Canavan: On Wed, Apr 3, 2019 at 10:18 AM LuKreme wrote: On Apr 3, 2019, at 02:05, Hajo Locke wrote: Is apache 2.2 exploitable by CVE-2019-0211 ? Description says that first affected version is 2.4.17, but may be 2.2 was not analyzed. “Apache HTT

Re: [users@httpd] Re: CVE-2019-0211 - Apache 2.2

2019-04-03 Thread Yann Ylavic
On Wed, Apr 3, 2019 at 11:06 AM Rainer Canavan wrote: > > On Wed, Apr 3, 2019 at 10:18 AM LuKreme wrote: > > > > On Apr 3, 2019, at 02:05, Hajo Locke wrote: > > > Is apache 2.2 exploitable by CVE-2019-0211 ? > > > Description says that first affected version is 2.4.17, but may be 2.2 > > > was

Re: [users@httpd] Re: CVE-2019-0211 - Apache 2.2

2019-04-03 Thread Rainer Canavan
On Wed, Apr 3, 2019 at 10:18 AM LuKreme wrote: > > On Apr 3, 2019, at 02:05, Hajo Locke wrote: > > Is apache 2.2 exploitable by CVE-2019-0211 ? > > Description says that first affected version is 2.4.17, but may be 2.2 was > > not analyzed. > > “Apache HTTP Server 2.4 releases 2.4.17 to 2.4.38”

[users@httpd] Re: CVE-2019-0211 - Apache 2.2

2019-04-03 Thread LuKreme
On Apr 3, 2019, at 02:05, Hajo Locke wrote: > Is apache 2.2 exploitable by CVE-2019-0211 ? > Description says that first affected version is 2.4.17, but may be 2.2 was > not analyzed. “Apache HTTP Server 2.4 releases 2.4.17 to 2.4.38” seems clear. -- My main job is trying to come up with new a