ALAS-2013-238


Amazon Linux 1 Security Advisory: ALAS-2013-238
Advisory Release Date: 2013-10-23 15:26 Pacific
Advisory Updated Date: 2014-09-16 21:48 Pacific
Severity: Important

Issue Overview:

Heap-based buffer overflow in the fcgid_header_bucket_read function in fcgid_bucket.c in the mod_fcgid module before 2.3.9 for the Apache HTTP Server allows remote attackers to have an unspecified impact via unknown vectors.


Affected Packages:

mod_fcgid


Issue Correction:
Run yum update mod_fcgid to update your system.

New Packages:
i686:
    mod_fcgid-debuginfo-2.3.9-1.6.amzn1.i686
    mod_fcgid-2.3.9-1.6.amzn1.i686

src:
    mod_fcgid-2.3.9-1.6.amzn1.src

x86_64:
    mod_fcgid-2.3.9-1.6.amzn1.x86_64
    mod_fcgid-debuginfo-2.3.9-1.6.amzn1.x86_64