apache2 2.2.20-1ubuntu1.2 source package in Ubuntu

Changelog

apache2 (2.2.20-1ubuntu1.2) oneiric-security; urgency=low

  * SECURITY UPDATE: arbitrary code execution via crafted SetEnvIf
    directive (LP: #811422)
    - debian/patches/215_CVE-2011-3607.dpatch: validate length in
      server/util.c.
    - CVE-2011-3607
  * SECURITY UPDATE: another mod_proxy reverse proxy exposure
    - debian/patches/216_CVE-2011-4317.dpatch: validate additional URIs in
      modules/mappers/mod_rewrite.c, modules/proxy/mod_proxy.c,
      server/protocol.c.
    - CVE-2011-4317
  * SECURITY UPDATE: denial of service via invalid cookie
    - debian/patches/217_CVE-2012-0021.dpatch: check name and value in
      modules/loggers/mod_log_config.c.
    - CVE-2012-0021
  * SECURITY UPDATE: denial of service and possible code execution via
    type field modification within a scoreboard shared memory segment
    - debian/patches/218_CVE-2012-0031.dpatch: check type field in
      server/scoreboard.c.
    - CVE-2012-0031
  * SECURITY UPDATE: cookie disclosure via Bad Request errors
    - debian/patches/219_CVE-2012-0053.dpatch: check lengths in
      server/protocol.c.
    - CVE-2012-0053
 -- Marc Deslauriers <email address hidden>   Tue, 14 Feb 2012 09:35:36 -0500

Upload details

Uploaded by:
Marc Deslauriers
Uploaded to:
Oneiric
Original maintainer:
Ubuntu Developers
Architectures:
any
Section:
httpd
Urgency:
Low Urgency

See full publishing history Publishing

Series Pocket Published Component Section

Downloads

File Size SHA-256 Checksum
apache2_2.2.20.orig.tar.gz 6.5 MiB 0abb59689664ae4db5d1ee1ab4140715b87f889e81de2b4d9581c235594e2868
apache2_2.2.20-1ubuntu1.2.diff.gz 213.9 KiB 74927ad063ed279b222d1df6b6815ba1c3c245a3bed1b4fa0e3262cb8c5a2d75
apache2_2.2.20-1ubuntu1.2.dsc 2.5 KiB 517519c2a13b77c6b45ae5b9c46c57d3f1ab8960daa6ecb49cd8624c3a89bf11

View changes file

Binary packages built by this source

apache2: No summary available for apache2 in ubuntu oneiric.

No description available for apache2 in ubuntu oneiric.

apache2-doc: No summary available for apache2-doc in ubuntu oneiric.

No description available for apache2-doc in ubuntu oneiric.

apache2-mpm-event: No summary available for apache2-mpm-event in ubuntu oneiric.

No description available for apache2-mpm-event in ubuntu oneiric.

apache2-mpm-itk: No summary available for apache2-mpm-itk in ubuntu oneiric.

No description available for apache2-mpm-itk in ubuntu oneiric.

apache2-mpm-prefork: No summary available for apache2-mpm-prefork in ubuntu oneiric.

No description available for apache2-mpm-prefork in ubuntu oneiric.

apache2-mpm-worker: No summary available for apache2-mpm-worker in ubuntu oneiric.

No description available for apache2-mpm-worker in ubuntu oneiric.

apache2-prefork-dev: No summary available for apache2-prefork-dev in ubuntu oneiric.

No description available for apache2-prefork-dev in ubuntu oneiric.

apache2-suexec: No summary available for apache2-suexec in ubuntu oneiric.

No description available for apache2-suexec in ubuntu oneiric.

apache2-suexec-custom: No summary available for apache2-suexec-custom in ubuntu oneiric.

No description available for apache2-suexec-custom in ubuntu oneiric.

apache2-threaded-dev: No summary available for apache2-threaded-dev in ubuntu oneiric.

No description available for apache2-threaded-dev in ubuntu oneiric.

apache2-utils: No summary available for apache2-utils in ubuntu oneiric.

No description available for apache2-utils in ubuntu oneiric.

apache2.2-bin: No summary available for apache2.2-bin in ubuntu oneiric.

No description available for apache2.2-bin in ubuntu oneiric.

apache2.2-common: No summary available for apache2.2-common in ubuntu oneiric.

No description available for apache2.2-common in ubuntu oneiric.