Table of Contents

Public Date:
1617741: CVE-2005-2700 security flaw

The MITRE CVE dictionary describes this issue as:

ssl_engine_kernel.c in mod_ssl before 2.8.24, when using "SSLVerifyClient optional" in the global virtual host configuration, does not properly enforce "SSLVerifyClient require" in a per-location context, which allows remote attackers to bypass intended access restrictions.

Find out more about CVE-2005-2700 from the MITRE CVE dictionary dictionary and NIST NVD.

Red Hat Security Errata

Platform Errata Release Date
Stronghold 4 for Red Hat Enterprise Linux RHSA-2005:816 2005-11-02
Red Hat Enterprise Linux 2.1 RHSA-2005:773 2005-09-15
Red Hat Stronghold 4 RHSA-2005:882 2005-12-19
Red Hat Enterprise Linux 3 (httpd) RHSA-2005:608 2005-09-06
Red Hat Enterprise Linux 4 (httpd) RHSA-2005:608 2005-09-06
Last Modified

CVE description copyright © 2017, The MITRE Corporation