[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [cobalt-users] security patch2.2



Luc Schiltz wrote:
> 
> hi,
> 
> if you use : http://ip/siteadmin the requested url it tries to access doesn't exist
> 
> does anybody have a patch for this ? or should we do a sysreset -f , as till now, we only have 3 customers running on it ?

This http://x.com/siteadmin is a rewite rule contained in the
main httpd.conf for the primary apache process.  This is not
touched by the Security-2.2 update.

The following files are updated with Security-2.2:
siteUserMod.cgi
siteUserList.cgi
User.pm

This has nothing to do with apache's rewrite rules.  If you take
a look around line 350 in /etc/httpd/conf/httpd.conf you will
see how the /siteadmin/ rule works.

Jeff

-- 
Jeff Lovell
Software Engineer
Cobalt Networks, Inc.