diff options
author | Martynas Venckus <martynas@cvs.openbsd.org> | 2007-08-09 10:44:55 +0000 |
---|---|---|
committer | Martynas Venckus <martynas@cvs.openbsd.org> | 2007-08-09 10:44:55 +0000 |
commit | 79a8bfd27b4f1bdbbad4a69727336130b7f77558 (patch) | |
tree | a7015e60da40cb7714ce65da7c910fc36da9ebc4 /share/man | |
parent | 3ad5e9915427ce214624f28b9aaa924b12d6e088 (diff) |
fix CVE-2007-3304
The Apache HTTP server did not verify that a process was an Apache child
process before sending it signals. A local attacker with the ability to
run scripts on the HTTP server could manipulate the scoreboard and cause
arbitrary processes to be terminated which could lead to a denial of
service.
ok miod@ (who also noticed to protect reclaim_child_processes); henning@;
djm@
Diffstat (limited to 'share/man')
0 files changed, 0 insertions, 0 deletions