Apache 'Options' and 'AllowOverride' Directives Security Bypass Vulnerability

Apache HTTP server is prone to a security-bypass vulnerability related to the handling of specific configuration directives.

A local attacker may exploit this issue to execute arbitrary code within the context of the webserver process. This may result in elevated privileges or aid in further attacks.

Versions prior to Apache 2.2.11 are vulnerable.


 

Privacy Statement
Copyright 2010, SecurityFocus