Re: Apache goes berserk

From: Brett Glass (brettat_private)
Date: Thu Jun 27 2002 - 14:27:53 PDT

  • Next message: Joao Gouveia: "Re: Someone looking for CodeRed infected boxes ?"

    At 03:09 PM 6/27/2002, Tobias Rosenstock wrote:
    
    >looks like your box is under fire from someone who tries to break in
    >through the well-published apache chunked request vulnerability, probably
    >even using apache-scalp.c, which was published on bugtraq last week.
    
    This could well be.
    
    However, I'm running 2.0.39, which The Apache Group says is supposed to 
    be immune. 
    
    Maybe they're wrong, or maybe a DoS is possible even though a complete
    takeover of the server is not.
    
    --Brett
    
    
    ----------------------------------------------------------------------------
    This list is provided by the SecurityFocus ARIS analyzer service.
    For more information on this free incident handling, management 
    and tracking system please see: http://aris.securityfocus.com
    



    This archive was generated by hypermail 2b30 : Fri Jun 28 2002 - 10:10:52 PDT