Full Disclosure mailing list archives

Re: Another exploit against apache or kernel


From: Frank Knobbe <frank () knobbe us>
Date: Wed, 11 May 2005 01:54:49 -0500

On Tue, 2005-05-10 at 17:04 -0500, Paul Schmehl wrote:
SecFilterSelective THE_REQUEST "ip-hide" would stop this attack cold.

Paul, I think Adrian put "ip-hide" in there to mask his server's IP
address in the log. It's not part of the web request the external party
made.

Cheers,
Frank

Attachment: signature.asc
Description: This is a digitally signed message part

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/

Current thread: