SuSE9 Security Update : Apache (YOU Patch Number 11489)
Medium Nessus Plugin ID 41124
SynopsisThe remote SuSE 9 host is missing a security-related patch.
DescriptionThis update includes a missed security update for Apache 1.3. The problem is already fixed for our Apache2 packages.
- mod_imap: Escape untrusted Referer header before outputting in HTML to avoid potential cross-site scripting. A change was also made to ap_escape_html so we escape quotes. (CVE-2005-3352)
SolutionApply YOU patch number 11489.