The CVE highlights the importance of keeping libraries like expat up-to-date to mitigate security risks associated with permission requirements.

CVE-2009-3560 affects http_server and libexpat, impacting specific versions of Apache HTTP Server and XML Twig for Perl. The vulnerability involves permissions required and has been patched.

  • Vulnerability affects Apache HTTP Servers from versions 2.0.35-2.0.64 and 2.2.0-2.2.17
  • Includes XML Twig for Perl across all its versions
  • The issue is related to permission requirements in the libexpat library
Action Items:
  • Update to the latest version of expat to apply patches addressing CVE-2009-3560
  • Review and secure configurations using Apache HTTP Server within the affected versions
Source →