[Secure-testing-team] Re: [Secure-testing-commits] r3093 - in data: . CVE

Florian Weimer fw at deneb.enyo.de
Mon Dec 19 09:23:16 UTC 2005


* Moritz Muehlenhoff:

>  CVE-2003-0844 (mod_gzip 1.3.26.1a and earlier, and possibly later official versions, ...)
> -	NOTE: libapache-mod-gzip, vulnerable only when compiled in debug mode
> -	NOTE: Debian doesn't enable MOD_GZIP_DEBUG1.
> +	- libapache-mod-gzip <unfixed> (Debian doesn't enable vulnerable debug mode)
> +	TODO: Check, whether this is fixed already

Is this <unfixed> or <not-affected>, or just unimportant




More information about the Secure-testing-team mailing list