Hi all, I was recently informed from our IT-security team that a security leak was found by Apache Httpd (see [1]). This leak was fixed but seems Apache hasn't delevered the fixed version. Who knows when I can get this new fixed version? [1] http://securitytracker.com/id/1026353 -- View this message in context: http://old.nabble.com/A-question-about-%22Apache-mod_proxy-mod_rewrite-Bug-Lets-Remote-Users-Access-Internal-Servers%22-tp32980338p32980338.html Sent from the Apache HTTP Server - Users mailing list archive at Nabble.com. --------------------------------------------------------------------- The official User-To-User support forum of the Apache HTTP Server Project. See <URL:http://httpd.apache.org/userslist.html> for more info. To unsubscribe, e-mail: users-unsubscribe@xxxxxxxxxxxxxxxx " from the digest: users-digest-unsubscribe@xxxxxxxxxxxxxxxx For additional commands, e-mail: users-help@xxxxxxxxxxxxxxxx