AW: CVE-2017-9788: Uninitialized memory reflection in mod_auth_digest

2017-07-17 Thread Plüm , Rüdiger , Vodafone Group
http://svn.apache.org/r1800955 Regards Rüdiger Von: Rashmi Srinivasan [mailto:rashmisrinivasan2...@gmail.com] Gesendet: Montag, 17. Juli 2017 07:50 An: dev@httpd.apache.org Cc: us...@httpd.apache.org Betreff: Re: CVE-2017-9788: Uninitialized memory reflection in mod_auth_digest Hi, Please can

Re: CVE-2017-9788: Uninitialized memory reflection in mod_auth_digest

2017-07-16 Thread Rashmi Srinivasan
Hi, Please can you point us to the patch for this CVE? regards, Rashmi On Thu, Jul 13, 2017 at 6:32 PM, William A Rowe Jr <wr...@rowe-clan.net> wrote: > CVE-2017-9788: Uninitialized memory reflection in mod_auth_digest > > Severity: Important > > Vendor: The Apach

CVE-2017-9788: Uninitialized memory reflection in mod_auth_digest

2017-07-13 Thread William A Rowe Jr
CVE-2017-9788: Uninitialized memory reflection in mod_auth_digest Severity: Important Vendor: The Apache Software Foundation Versions Affected: all versions through 2.2.33 and 2.4.26 Description: The value placeholder in [Proxy-]Authorization headers of type 'Digest' was not initialized