SecuriTeam"! - Legacy Apache mod_jk2 Buffer Overflow

mod_jk2モジュールのHostヘッダに複数のバッファオーバーフローが起こる脆弱性が存在するそうです。

Within the mod_jk2 module, the module registers with Apache a request handler which parses the entire content of the request, specifically the Host headers, in order to determine which Tomcat worker to forward the request to. For example, multiple buffer overflow opportunities exist within the following code segments:

screenshot