FlawAtlas
Search the atlas
SUSE-SU-2015:0689-1 Not scored

Recommended update for apache2

This update for the Apache Web Server introduces directives to control two protocol options: * HttpContentLengthHeadZero: Allow responses to HEAD request with Content-Length of 0 * HttpExpectStrict: Allow the administrator to control whether clients must send '100-continue' MODULE_MAGIC_NUMBER_MINOR has been increased to 24, as this change is not forward-compatible. Modules built against this release might not work correctly with older releases of the Apache Web Server.

Exploit probability Not scored
Published September 11, 2014
Required by Not available
Last source change February 4, 2026

03 / CONNECTIONS

Connected vulnerabilities

04 / EVIDENCE

Source records

Open Source Vulnerabilities SUSE-SU-2015:0689-1

This update for the Apache Web Server introduces directives to control two protocol options: * HttpContentLengthHeadZero: Allow responses to HEAD request with Content-Length of 0 * HttpExpectStrict: Allow the administrator to control whether clients must send '100-continue' MODULE_MAGIC_NUMBER_MINOR has been increased to 24, as this change is not forward-compatible. Modules built against this release might not work correctly with older releases of the Apache Web Server.

View original source

05 / REFERENCES

Further evidence