Summary
Sebastien Bocahu discovered that the reverse proxy add forward module for the Apache webserver is vulnerable to a denial of service attack through a single crafted request with many headers.
Solution
For the stable distribution (squeeze), this problem has been fixed in version 0.5-3+squeeze1.
For the testing distribution (wheezy) and unstable distribution (sid), this problem has been fixed in version 0.6-1.
We recommend that you upgrade your libapache2-mod-rpaf packages.
Insight
rpaf is short for reverse proxy add forward.
Affected
libapache2-mod-rpaf on Debian Linux
Detection
This check tests the installed software version using the apt package manager.
References
Updated on 2015-03-25