On 2005.02.08, Tom Jackson <[EMAIL PROTECTED]> wrote:
> NOTE2: users of virtual servers running 4.0.8 or 4.0.9 should upgrade to
> 4.0.10, due to a DOS bug. If you need info, email me directly.

Unless this is a different DoS issue than the one we discussed, the
"fix" requiring defaultservers was added in 4.0.8.  So, as long as
you're on >= 4.0.8, you should be okay.  Actually, I think only 4.0.6
had the DoS bug?  Our email discussion said you were able to crash 4.0.7
without the Host: header, but that was exactly what the 4.0.7 release
was supposed to fix (the bug was introduced in 4.0.6).

-- Dossy

--
Dossy Shiobara                       mail: [EMAIL PROTECTED]
Panoptic Computer Network             web: http://www.panoptic.com/
  "He realized the fastest way to change is to laugh at your own
    folly -- then you can let go and quickly move on." (p. 70)


--
AOLserver - http://www.aolserver.com/

To Remove yourself from this list, simply send an email to <[EMAIL PROTECTED]> 
with the
body of "SIGNOFF AOLSERVER" in the email message. You can leave the Subject: 
field of your email blank.

Reply via email to