Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs
BugTraq
Name:
Email:
*Note: Email address will appear as "user domain ext" to prevent harvesting.
Subject:
Message:
 
Re[2]: Hijacking Apache 2 via mod_perl Jan 22 2004 05:37PM
3APA3A (3APA3A SECURITY NNOV RU)
Dear Ben Laurie,

--Thursday, January 22, 2004, 6:53:01 PM, you wrote to linux_4ever (at) yahoo (dot) com [email concealed]:

BL> This is not a leak - mod_perl is a module that is compiled into Apache,
BL> and hence has access to all its resources (including memory). If you
BL> want to run untrusted Perl, then don't use mod_per...

[ more ]  





 

Privacy Statement
Copyright 2009, SecurityFocus