Brightbox
  • Home
  • Pricing & Sign up
  • Why Brightbox?
  • Products & Services
  • FAQs
  • About
  • Blog
  • Wiki
  • Contact
Blog RSS feed
POSTED BY

George Hills

george@brightbox.co.uk

twitter_banner

Recent Posts

  • New deployment gem release, better bundler support
  • Passenger 3.0.11 Ubuntu Packages
  • Brightbox Cloud - general availability
  • It's a new brand day!
  • Apache Denial-of-Service Vulnerability

Apache Denial-of-Service Vulnerability 2 Sep 11

A bug in the Apache webserver has recently been widely publicised. The bug is very simple to trigger remotely and causes almost-instant memory exhaustion (OOM) on the targeted server, which causes any sites hosted there to be unavailable until the server is restarted.

mitre.org has links to more information about this bug.

Ubuntu released new versions of the Apache packages last night, which contain a fix for this bug.

We recommend that customers who are using Apache on their Brightboxes, should upgrade as soon as reasonably convenient. The default Brightbox install uses Apache, so if you are unsure whether or not this affects you then you should upgrade Apache using the instructions below.

The upgrade requires a restart of Apache, which will momentarily interrupt service. In cases where your Brightboxes are behind a load-balancer, the impact of this is minimal.

We believe the upgrade to be low-risk; we have already upgraded a large number of our own servers today without incident, and the only changes relative to the previous package are this security fix.

The necessary commands are

sudo apt-get update
sudo apt-get -y install apache2.2-common

Posted 2 September 2011 by George Hills


Recent blog posts

  • New deployment gem release, better bundler support
    2 months ago
  • Passenger 3.0.11 Ubuntu Packages
    2 months ago
  • Brightbox Cloud – general availability
    4 months ago
  • It’s a new brand day!
    4 months ago
  • Apache Denial-of-Service Vulnerability
    5 months ago
  • Pricing for Brightbox Cloud (and last call for private beta)
    6 months ago

Join our email list

Flickr (more...)

RSS feeds

Blog feed

Flickr feed

Recent Wiki updates

System Status feed




Wiki | Forums | Terms & Conditions | Privacy | Site Map

Copyright © 2011 Brightbox Systems Ltd. All rights reserved