Skip to content

Commit 611fd95

Browse files
Update security-apache
1 parent 2a73438 commit 611fd95

File tree

1 file changed

+4
-11
lines changed

1 file changed

+4
-11
lines changed

www/templates/security-apache

Lines changed: 4 additions & 11 deletions
Original file line numberDiff line numberDiff line change
@@ -2,17 +2,10 @@ Hi ISP,
22

33
Thank you for the report. We believe this is a false positive.
44

5-
The host in question runs Debian stable ("stretch") and has installed
6-
the apache2 package at version {version}.
5+
The host in question runs a currently supported Debian version and has
6+
installed the apache2 package at version {version}.
77

8-
Because the Debian security team backports patches to software without
9-
upgrading to a newer point release, the banner version says 2.4.25
10-
despite containing fixes for these CVEs.
11-
12-
Here is documentation from Debian indicating that the version we are
13-
running contains patches for the CVEs mentioned:
14-
15-
https://security-tracker.debian.org/tracker/CVE-{cve1}
16-
https://security-tracker.debian.org/tracker/CVE-{cve2}
8+
By default, Apache in Debian only displays up to the MINOR release in
9+
its server signature.
1710

1811
Thanks,

0 commit comments

Comments
 (0)