URL regular expression DoS (CVE-2007-1349)
A flaw was discovered in the Apache::PerlRun module shipped with mod_perl 1.29 and earlier and in the ModPerl::RegistryCooker module shipped with mod_perl 2.03 and earlier. A remote attacker could craft a URL with a path that would be interpreted as a regular expression, potentially allowing a denial of service by creating an expression that will take a very long time to run. This vulnerability only affects Apache::PerlRun and custom subclasses of ModPerl::RegistryCooker that explicitly use the namespace_from_uri() method. The Apache::Registry, ModPerl::PerlRun, and ModPerl::Registry modules are NOT affected.

Users of mod_perl 1.29 and earlier are encouraged to upgrade to 1.30 if they use Apache::PerlRun for their applications. Users of mod_perl 2.03 are encouraged to check their custom code for calls to the namespace_from_uri() method and replace it with the namespace_from_filename() method.

Please note!
mod_perl-1.24_01.tar.gz or later is required for Apache >= 1.3.14.

[ICO]NameLast modifiedSizeDescription

[DIR]Parent Directory  - Perl project
[TXT]HEADER.html30-Mar-2007 06:38 1.1KPerl project
[   ]HEADER.html.old22-Mar-2006 16:28 359 Perl project
[SIG]KEYS29-Nov-2006 02:36 35KDeveloper PGP/GPG keys
[   ]README01-Aug-2002 19:53 4.3KPerl project
[DIR]contrib/25-Feb-1999 17:42 - Perl project
[   ]mod_perl-1.30.tar.gz30-Mar-2007 00:14 380KPerl project
[SIG]mod_perl-1.30.tar.gz.asc30-Mar-2007 00:14 186 PGP signature
[DIR]mod_perl-1.30/30-Mar-2007 00:14 - Perl project
[   ]mod_perl-2.0.3.tar.gz29-Nov-2006 02:32 3.5MPerl project
[SIG]mod_perl-2.0.3.tar.gz.asc29-Nov-2006 02:32 189 PGP signature
[DIR]mod_perl-2.0.3/29-Nov-2006 02:10 - Perl project
[   ]mod_perl-2.0.4.tar.gz17-Apr-2008 00:33 3.6MPerl project
[SIG]mod_perl-2.0.4.tar.gz.asc17-Apr-2008 00:33 186 PGP signature
[DIR]mod_perl-2.0.4/17-Apr-2008 00:20 - Perl project

Apache/2.2.3 (Debian) Server at apache.ucr.ac.cr Port 80


Zentek International provides this mirror in good faith, and is not responsible for the content of this mirror.
Please do not abuse this free resource. Additional offshore mirrors in Asia can be found here.