CVE-2002-1157

Impact:
Low
Public Date:
2002-10-22
Bugzilla:
1616849: CVE-2002-1157 security flaw

The MITRE CVE dictionary describes this issue as:

Cross-site scripting vulnerability in the mod_ssl Apache module 2.8.9 and earlier, when UseCanonicalName is off and wildcard DNS is enabled, allows remote attackers to execute script as other web site visitors, via the server name in an HTTPS response on the SSL port, which is used in a self-referencing URL, a different vulnerability than CAN-2002-0840.

Find out more about CVE-2002-1157 from the MITRE CVE dictionary dictionary and NIST NVD.

Red Hat Security Errata

Platform Errata Release Date
Red Hat Enterprise Linux 2.1 RHSA-2002:251 2003-01-09
Stronghold 4 for Red Hat Enterprise Linux RHSA-2002:248 2002-11-07
Red Hat Linux 7.2 RHSA-2002:222 2002-12-12
Red Hat Linux 7.3 RHSA-2002:222 2002-12-12
Red Hat Stronghold 3 RHSA-2002:243 2002-11-08
Red Hat Linux 6.2 RHSA-2002:222 2002-12-12
Red Hat Linux 8.0 RHSA-2002:222 2002-12-12
Red Hat Linux 7.1 RHSA-2002:222 2002-12-12
Red Hat Linux 7.0 RHSA-2002:222 2002-12-12
Red Hat Linux 7.1 RHSA-2003:106 2003-04-22
Red Hat Stronghold 4 RHSA-2002:244 2002-11-08

Last Modified

CVE description copyright © 2017, The MITRE Corporation

Close

Welcome! Check out the Getting Started with Red Hat page for quick tours and guides for common tasks.