#13332 closed enhancement (fixed)
httpd-2.4.43
Reported by: | Bruce Dubbs | Owned by: | Bruce Dubbs |
---|---|---|---|
Priority: | high | Milestone: | 10.0 |
Component: | BOOK | Version: | SVN |
Severity: | normal | Keywords: | |
Cc: |
Description ¶
New point version.
Change History (5)
comment:1 by , 5 years ago
Priority: | normal → high |
---|
comment:2 by , 5 years ago
Owner: | changed from | to
---|---|
Status: | new → assigned |
Note:
See TracTickets
for help on using tickets.
This seems to have two security fixes in it - CVE-2020-1927 (ineffective mitigation for CVE-2019-10098), and CVE-2020-1934
CVE-2020-1927: mod_rewrite configurations vulnerable to open redirect
CVE-2020-1934: mod_proxy_ftp use of uninitialized value