Oval Definition:oval:org.cisecurity:def:185
Revision Date:2016-02-08Version:2
Title:DSA-3278-1 -- libapache-mod-jk -- security update
Description:An information disclosure flaw due to incorrect JkMount/JkUnmount directives processing was found in the Apache 2 module mod_jk to forward requests from the Apache web server to Tomcat. A JkUnmount rule for a subtree of a previous JkMount rule could be ignored. This could allow a remote attacker to potentially access a private artifact in a tree that would otherwise not be accessible to them.
Family:unixClass:patch
Status:ACCEPTEDReference(s):CVE-2014-8111
DSA-3278-1
Platform(s):Debian 8
Debian GNU/kFreeBSD 7.0
Debian GNU/Linux 7.0
Product(s):libapache-mod-jk
Definition Synopsis
  • Debian 7
  • Debian 7 is installed
  • AND GNU/Linux or GNU/kFreeBSD kernel
  • Debian GNU/Linux is installed
  • OR Debian GNU/kFreeBSD is installed
  • AND libapache-mod-jk is earlier than 1:1.2.37-1+deb7u1
  • OR Debian 8
  • Debian 8 is installed
  • AND libapache-mod-jk is earlier than 1:1.2.37-4+deb8u1
  • BACK