ZDNet UK


Skip to Main Content

ZDNet.co.uk - Winner of Best Business Website 2007
  1. Home
  2. News
  3. Blogs
  4. Reviews
  5. Prices
  6. Resources
  7. Community
  8. My ZDNet

 

ZDNet UK RSS Feeds


IT Jobs

Enterprise applications Toolkit

Apache issues anti-DoS patch

Sandeep Junnarkar CNET News.com

Published: 04 Apr 2003 10:12 BST

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

The Apache Software Foundation has released a patch for its Apache 2.0 HTTP Server to thwart a "significant" denial-of-service vulnerability.

Apache, which makes the popular open-source Web server application, released version 2.0.45 to fix a denial-of-service (DoS) problem. A DoS attack floods a network with data, rendering it inaccessible to legitimate queries. Version 2.0.45 is available from Apache's Web site.

The vulnerability in version 2.0.44 affects all operating systems, according to the advisory. But Apache issued a specific warning for OS/2 users, noting that for them the new patch still had a DoS vulnerability.

That outstanding issue will be fixed with the upcoming release of 2.0.46, but Apache said it was too important to delay the 2.0.45 patch.

The foundation urged, "All Apache 2.0 users are encouraged to upgrade now."

The foundation rushed the patch out perhaps to avert the kind of scenario that occurred last June, when a security firm released news of a flaw and gave Apache only a few hours to respond.

The DoS vulnerability in version 2.0.44 was discovered by David Endler of security firm iDefense. Apache did not provide specific details about the issues, noting only that Endler would publish details on 8 April.

Apache dominates the Web server market with nearly 63 percent market share, according to March statistics from consulting firm Netcraft. Microsoft trails well behind with 27.4 percent, and Sun Microsystems has a paltry 1.1 percent of the market.


For all security-related news, including updates on the latest viruses, hacking exploits and patches, check out ZDNet UK's Security News Section.

Let the editors know what you think in the Mailroom.

  • Email
  • Trackback
  • Clip Link
  • Print friendly Print with Kyocera

Did you find this article useful?
42 out of 78 people found this useful


Full Talkback thread

0 comments

Company/Topic Alerts

Create a new alert from the list below:




Related Jobs

J2EE/Apache/Tomcat Web Systems Engineer- London City - 60k + Benefits

J2EE/tomcat/apache/UNIX. On a daily basis you will be responsible for the support and maintenance of the UNIX based company software and hardware ...

LINUX ENGINEER (LINUX/APACHE/BIND) 40+ - nr.WATFORD LINUX

Your expertise will include: - Previous experience in a Linux Systems Administrator role - Excellent problem solving skills - Ability to manage a ...

Environment Engineer

Other activities would include booking and scheduling rig usage, ensuring all Government Furnished Equipment remains traceable and ensuring currency ...

Featured Talkback

The internet is going to have do a lot of maturing before it is ready for this kind of traffic. Security is always going to be a problem, connectivity is poor, and most business's are unwilling for their employees to have open access.

By: ator1940

Read full story:
Microsoft prepares to take Office online