SuSE 11.1 Security Update : Apache2 (SAT Patch Number 5482)
Medium Nessus Plugin ID 57090
The remote SuSE 11 host is missing one or more security updates.
This update fixes several security issues in the Apache2 webserver. - This update also includes several fixes for a mod_proxy reverse exposure via RewriteRule or ProxyPassMatch directives. (CVE-2011-3639 / CVE-2011-3368 / CVE-2011-4317) - Fixed the SSL renegotiation DoS by disabling renegotiation by default. (CVE-2011-1473) - Integer overflow in ap_pregsub function resulting in a heap-based buffer overflow could potentially allow local attackers to gain privileges. (CVE-2011-3607) Also a non-security bug was fixed : - httpd-2.2.x-bnc727071-mod_authnz_ldap-utf8.diff: make non-ascii eg UTF8 passwords work with mod_authnz_ldap. [bnc#727071]