[MacPorts] #38452: Information disclosure vulnerability with apache2 and other web servers (was: PHP code disclosure vulnerability with apache2 and other web servers)

MacPorts noreply at macports.org
Wed Mar 20 14:00:43 PDT 2013


#38452: Information disclosure vulnerability with apache2 and other web servers
-------------------------+--------------------------------
  Reporter:  vikingjs@…  |      Owner:  macports-tickets@…
      Type:  defect      |     Status:  new
  Priority:  High        |  Milestone:
 Component:  ports       |    Version:  2.1.3
Resolution:              |   Keywords:
      Port:  apache2     |
-------------------------+--------------------------------
Changes (by ryandesign@…):

 * cc: cal@… (added)


Comment:

 Yes I realize that.

 I have reported the problem to the Apache security list now too.

 Porting mod_hfs_apple would perhaps help Apache but I don't think we
 should have to do that; the Apache developers should give us a secure web
 server out of the box. Also it would not help lighttpd. I have not tested
 nginx or other web servers.

-- 
Ticket URL: <https://trac.macports.org/ticket/38452#comment:9>
MacPorts <http://www.macports.org/>
Ports system for OS X


More information about the macports-tickets mailing list