[FFE] apache2 DoS attack using slowloris
Bug #392759 reported by
LiraNuna
This bug affects 3 people
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
apache2 (Debian) |
Fix Released
|
Unknown
|
|||
apache2 (Ubuntu) |
Fix Released
|
High
|
Chuck Short | ||
Lucid |
Fix Released
|
High
|
Chuck Short |
Bug Description
Ubuntu's apache2 is vulnerable to a DoS attack called "slowloris" (more info at http://
The answer was supposed to be mod_evasive (package libapache2-
The new answer is mod_antiloris (ftp://ftp.
visibility: | private → public |
Changed in apache2 (Ubuntu): | |
importance: | Undecided → Wishlist |
status: | New → Confirmed |
Changed in apache2 (Debian): | |
importance: | Undecided → Unknown |
status: | New → Unknown |
status: | Unknown → Confirmed |
Changed in apache2 (Debian): | |
status: | Confirmed → New |
Changed in apache2 (Debian): | |
status: | New → Confirmed |
Changed in apache2 (Ubuntu): | |
assignee: | nobody → Dekar (dekar-wc3edit) |
assignee: | Dekar (dekar-wc3edit) → nobody |
assignee: | nobody → Ubuntu Security Team (ubuntu-security) |
Changed in apache2 (Ubuntu): | |
assignee: | Ubuntu Security Team (ubuntu-security) → nobody |
Changed in apache2 (Debian): | |
status: | Confirmed → New |
Changed in apache2 (Ubuntu): | |
status: | Confirmed → Triaged |
Changed in apache2 (Debian): | |
status: | New → Fix Released |
Changed in apache2 (Ubuntu Lucid): | |
assignee: | nobody → Chuck Short (zulcss) |
To post a comment you must log in.
I forgot to mention my Ubuntu version - 8.04.2 server LTS fully upgraded.