Security expert Prutha Parikh informed that a pach published by Apache Foundation in early October does not protect from some attacks. Flaws in mod_proxy and mod_rewrite still can be exploited. Parikh found a way to attack patched Apache server.
The problem is now discussed on the Apache Foundation mailing list.
source: Heise Online
28.11.2011