Summary
The remote host is missing an update to the system as announced in the referenced advisory.
Solution
Update your system with the appropriate patches or software upgrades.
http://www.securitylab.ru/48807.html
http://www.vuxml.org/freebsd/6e6a6b8a-2fde-11d9-b3a2-0050fc56d258.html
Insight
The following packages are affected:
apache
apache+mod_ssl
apache+mod_ssl+ipv6
apache+mod_perl
apache+ipv6
apache+ssl
ru-apache
ru-apache+mod_ssl
CVE-2004-0940
Buffer overflow in the get_tag function in mod_include for Apache 1.3.x to 1.3.32 allows local users who can create SSI documents to execute arbitrary code as the apache user via SSI (XSSI) documents that trigger a length calculation error.
Severity
Classification
-
CVE CVE-2004-0940 -
CVSS Base Score: 6.9
AV:L/AC:M/Au:N/C:C/I:C/A:C
Related Vulnerabilities