Nixpkgs security tracker

Login with GitHub
⚠️ You are using a production deployment that is still only suitable for demo purposes. Any work done in this might be wiped later without notice.

Suggestions search

With package: apacheHttpdPackages.mod_wsgi3

Found 1 matching suggestions

View:
Compact
Detailed
created 2 months ago Activity log
  • Created suggestion
mod_wsgi module before 3.4 for Apache, when used in embedded …

mod_wsgi module before 3.4 for Apache, when used in embedded mode, might allow remote attackers to obtain sensitive information via the Content-Type header which is generated from memory that may have been freed and then overwritten by a separate thread.

Affected products

mod_wsgi
  • ==before 3.4

Matching in nixpkgs