MGASA-2013-0313

Source
https://advisories.mageia.org/MGASA-2013-0313.html
Import Source
https://advisories.mageia.org/MGASA-2013-0313.json
JSON Data
https://api.osv.dev/v1/vulns/MGASA-2013-0313
Related
Published
2013-10-17T20:01:29Z
Modified
2013-10-17T20:00:37Z
Summary
Updated apache-mod_fcgid packages fix CVE-2013-4365
Details

Updated apache-mod_fcgid package fixes security vulnerability:

Apache mod_fcgid before version 2.3.9 fails to perform adequate boundary checks on user-supplied input. This may allow a remote attacker to cause a heap-based buffer overflow, resulting in a denial of service or potentially allowing the execution of arbitrary code (CVE-2013-4365).

References
Credits

Affected packages

Mageia:3 / apache-mod_fcgid

Package

Name
apache-mod_fcgid
Purl
pkg:rpm/mageia/apache-mod_fcgid?distro=mageia-3

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.3.9-1.mga3

Ecosystem specific

{
    "section": "core"
}

Mageia:2 / apache-mod_fcgid

Package

Name
apache-mod_fcgid
Purl
pkg:rpm/mageia/apache-mod_fcgid?distro=mageia-2

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.3.6-2.2.mga2

Ecosystem specific

{
    "section": "core"
}