IBM Patches ‘Apache Killer’ DOS Vulnerability in IBM i
September 13, 2011 Alex Woodie
IBM this month issued two patches to fix a potentially dangerous denial of service (DOS) security vulnerability in HTTP Server for IBM i, which is based on the Apache Web server. The patch addresses the Apache HTTP Server ByteRange Filter Denial of Service Vulnerability, a security flaw dubbed the “Apache Killer” that was discovered in versions 1 and 2 in August, and which is currently being exploited in the wild. IBM patched the flaw for IBM i 6.1, and IBM i 7.1. IBM issued two Authorized Program Analysis Reports (APARs), numbers SE49334 and SE49333, on September 1 to address the |