[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

RE: [cobalt-users] Apache still scans as vulnerable



I am getting this same result.  I know someone had mentioned it earlier
this week, but I can't seem to find the message in the archives... Can
someone point us in the right direction?  Thanks!

-----Original Message-----
From: cobalt-users-admin@xxxxxxxxxxxxxxx
[mailto:cobalt-users-admin@xxxxxxxxxxxxxxx] On Behalf Of Chris Lathem
Sent: July 1, 2002 8:07 AM
To: cobalt-users@xxxxxxxxxxxxxxx
Subject: [cobalt-users] Apache still scans as vulnerable


I have a Raq XTR that has the apache update applied to it. Whenever I
test the server with the eeye chunked scanner I still receive a message
stating that the server is vulnerable. I did not patch the server
manually; I waited for the Cobalt released patch. Is there anything
special I need to do to get thing resolved, or is there a problem with
the scanner? Has anyone else had this problem?

I checked the version using /usr/sbin/httpd -v and my response was:

Apache/1.3.20 Sun Cobalt (Unix)
Jun 20 2002 17:41:13

The response from the eeye tool is below:
Apache/1.3.20 Sun Cobalt (Unix) mod_ssl/2.8.4 OpenSSL/0.9.6b PHP/4.0.6
mod_auth_pam_external/0.1 FrontPage/4.0.4.3 mod_perl/1.25

Any help would be appreciated.


Thanks,
Chris Lathem



_______________________________________________
cobalt-users mailing list
cobalt-users@xxxxxxxxxxxxxxx
To Subscribe or Unsubscribe, please go to:
http://list.cobalt.com/mailman/listinfo/cobalt-users