Apache HTTP server 2.2.15
Apache has released HTTP Server version 2.2.15, which addresses a number of security exposures in prior versions of the HTTP server. Of particular note is the updating of the OpenSSL library to 0.9.8m which addresses the renegotiation issues outlined in CVE-2009-3555. At the time of writing, the links to the complete [...]
In: Security · Tagged with: apache, http, openssl, Vulnerabilities
Vulnerabilities
Cisco disclosed multiple vulnerabilities in their Unified MeetingPlace product. These issues leave the product vulnerable to SQL injection attacks and could allow attackers to bypass authentication. Cisco has released patches to address these issues.
http://www.cisco.com/warp/public/707/cisco-sa-20100127-mp.shtml
http://secunia.com/advisories/38259/
The open source library YaSSL was found to have a security vulnerability related to the negotiation of SSL certificates. The possibility [...]
In: Education, Security · Tagged with: apache, cisco, denial of service, sql injection, SSL, Unified Meeting Place, YaSSL