store | blogs | forums | twitter | facebook | wiki | mailing lists | downloads | support portal
Atomic Secure Linux
It is currently Tue May 21, 2013 3:07 am

» Feed - Atomicorp

All times are UTC - 5 hours [ DST ]




Post new topic Reply to topic Share/Bookmark  [ 1 post ] 
Author Message
 Post subject: Important rule update for vulnerability in modsecurity
Unread postPosted: Sat Nov 07, 2009 3:27 pm 
Offline
Atomicorp Staff - Site Admin
Atomicorp Staff - Site Admin
User avatar

Joined: Thu Feb 07, 2008 7:49 pm
Posts: 3243
Location: Chantilly, VA
Modsecurity has a vulnerability in the rule engine that could allow certain attacks to bypass some rules. This is not a rule flaw, its a flaw in the engine itself.

We've put out an update to the rules to catch and stop these evasion attempts so even if you are running a vulnerable version of the engine you are still safe. Yes, a virtual patch for the engine itself without patching the engine. :-)

We'll also put out an update for modsecurity (defense in depth), but these rules stop the evasions cold.

You can force an update right now by running this command as root:

asl -u

Or, if your system is configured to update automatically then you can wait for your next update.

_________________
Michael Shinn
Atomicorp - Security For Everyone

Co-Author of Troubleshooting Linux Firewalls.


Top
 Profile  
 
Display posts from previous:  Sort by  
Post new topic Reply to topic Share/Bookmark  [ 1 post ] 

» Feed - Atomicorp

All times are UTC - 5 hours [ DST ]


Who is online

Users browsing this forum: No registered users and 1 guest


You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot post attachments in this forum

Search for:
Jump to:  
Powered by phpBB © 2000, 2002, 2005, 2007 phpBB Group