Description
Security fixes in Apache version 1.3.37:
- CVE-2006-3747 (cve.mitre.org) mod_rewrite: Fix an off-by-one security problem in the ldap scheme handling. For some RewriteRules this could lead to a pointer being written out of bounds. Reported by Mark Dowd of McAfee. [Mark Cox]
Affected Apache versions (up to 1.3.36).
Remediation
Upgrade Apache to the latest version.
References
Related Vulnerabilities
WordPress Plugin Contact Form 7 Database Information Disclosure (1.3)
Drupal Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2016-6212)
Moodle Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2016-2157)
OpenSSL Resource Management Errors Vulnerability (CVE-2011-4619)