oval:org.mitre.oval:def:26297

Definition Id: oval:org.mitre.oval:def:26297
 
Oval ID: oval:org.mitre.oval:def:26297
Title: DSA-2991-1 -- modsecurity-apache - security update
Description: Martin Holst Swende discovered a flaw in the way chunked requests are handled in ModSecurity, an Apache module whose purpose is to tighten the Web application security. A remote attacker could use this flaw to bypass intended mod_security restrictions by using chunked transfer coding with a capitalized Chunked value in the Transfer-Encoding HTTP header, allowing to send requests containing content that should have been removed by mod_security.
Family: unix Class: patch
Reference(s): DSA-2991-1
CVE-2013-5705
Version: 5
Platform(s): Debian GNU/Linux 7
Debian GNU/kFreeBSD 7
Product(s): modsecurity-apache
Definition Synopsis:
Definition Id: oval:org.mitre.oval:def:19338
 
Oval ID: oval:org.mitre.oval:def:19338
Title: Debian 7 is installed
Description: Debian 7 (wheezy) is installed
Family: unix Class: inventory
Reference(s): cpe:/o:debian:debian:7
Version: 7
Platform(s): Debian 7
Product(s):
Definition Synopsis:
Referenced By:
oval:org.mitre.oval:def:26297
Definition Id: oval:org.mitre.oval:def:24894
 
Oval ID: oval:org.mitre.oval:def:24894
Title: Debian GNU/Linux is installed
Description: Debian GNU/Linux is installed
Family: unix Class: inventory
Reference(s): cpe:/o:debian:debian_gnu/linux
Version: 3
Platform(s): Debian GNU/Linux
Product(s):
Definition Synopsis:
Referenced By:
oval:org.mitre.oval:def:26297
Definition Id: oval:org.mitre.oval:def:24698
 
Oval ID: oval:org.mitre.oval:def:24698
Title: Debian GNU/kFreeBSD is installed
Description: Debian GNU/kFreeBSD is installed
Family: unix Class: inventory
Reference(s): cpe:/o:debian:debian_gnu/kfreebsd
Version: 3
Platform(s): Debian GNU/kFreeBSD
Product(s):
Definition Synopsis:
Referenced By:
oval:org.mitre.oval:def:26297