OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
CVS: cvs.openbsd.org: src

From: Brad Smith (bradcvs.openbsd.org)
Date: Thu Oct 30 2003 - 18:20:32 CST


CVSROOT: /cvs
Module name: src
Changes by: bradcvs.openbsd.org 2003/10/30 17:20:31

Modified files:
        usr.sbin/httpd/src/include: Tag: OPENBSD_3_4 httpd.h
        usr.sbin/httpd/src/modules/standard: Tag: OPENBSD_3_4
                                             mod_alias.c mod_rewrite.c
                                             mod_rewrite.h

Log message:
SECURITY FIX
Fixed by henning
CAN-2003-0542 (cve.mitre.org)
Fix buffer overflows in mod_alias and mod_rewrite which occurred if
one configured a regular expression with more than 9 captures.

ok deraadt henning