Article - CS216826

Security vulnerability identified in web server Apache 2.2.8 hosting Creo Elements Direct Manager Software Distribution Server 19.0

Modified: 28-Aug-2018   


Applies To

  • Creo Elements/Direct Model Manager / Drawing Manager 19.00 to 20.1
  • Apache 2.2.8

Description

  • Security vulnerability identified in web server Apache 2.2.8 hosting Software Distribution Server 19.0
  • Several security vulnerabilities & the versions in which they are addressed are listed here for different versions of Apache 2.2
  • Security vulnerabilities identified for Apache 2.2.8 is limited to low level impact only
  • Following modules are identified to be affected by low level security vulnerabilities:
    • mod_log_config
    • mod_negotiation
    • mod_setenvif
  • There are several other modules listed on the above mentioned page, however they are not utilized by Software Distribution Server 19.0
  • Above listed security vulnerabilities are addressed in Apache 2.2.13 or later versions
  • Does vulnerability related to module mod_headers.so affect Apache 2.2.8 used for Model Manager?
This is a printer-friendly version of Article 216826 and may be out of date. For the latest version click CS216826