Mandrake Security Advisory MDVSA-2009:189 (apache-mod_auth_mysql)

The remote host is missing an update to apache-mod_auth_mysql announced via advisory MDVSA-2009:189.
To upgrade automatically use MandrakeUpdate or urpmi. The verification of md5 checksums and GPG signatures is performed automatically for you.
A vulnerability has been found and corrected in mod_auth_mysql: SQL injection vulnerability in mod_auth_mysql.c in the mod-auth-mysql (aka libapache2-mod-auth-mysql) module for the Apache HTTP Server 2.x allows remote attackers to execute arbitrary SQL commands via multibyte character encodings for unspecified input (CVE-2008-2384). This update provides fixes for this vulnerability. Affected: 2008.1, 2009.0, Corporate 4.0