apache2 2.4.38-2ubuntu2 source package in Ubuntu
Changelog
apache2 (2.4.38-2ubuntu2) disco; urgency=medium * SECURITY UPDATE: read-after-free on a string compare in mod_http2 - debian/patches/CVE-2019-0196.patch: disentangelment of stream and request method in modules/http2/h2_request.c. - CVE-2019-0196 * SECURITY UPDATE: privilege escalation from modules' scripts - debian/patches/CVE-2019-0211.patch: bind the bucket number of each child to its slot number in include/scoreboard.h, server/mpm/event/event.c, server/mpm/prefork/prefork.c, server/mpm/worker/worker.c. - CVE-2019-0211 * SECURITY UPDATE: mod_ssl access control bypass - debian/patches/CVE-2019-0215.patch: restore SSL verify state after PHA failure in TLSv1.3 in modules/ssl/ssl_engine_kernel.c. - CVE-2019-0215 * SECURITY UPDATE: mod_auth_digest access control bypass - debian/patches/CVE-2019-0217.patch: fix a race condition in modules/aaa/mod_auth_digest.c. - CVE-2019-0217 * SECURITY UPDATE: URL normalization inconsistincy - debian/patches/CVE-2019-0220-1.patch: merge consecutive slashes in the path in include/http_core.h, include/httpd.h, server/core.c, server/request.c, server/util.c. - debian/patches/CVE-2019-0220-2.patch: fix r->parsed_uri.path safety in server/request.c, server/util.c. - debian/patches/CVE-2019-0220-3.patch: maintainer mode fix in server/util.c. - CVE-2019-0220 -- Marc Deslauriers <email address hidden> Wed, 03 Apr 2019 14:31:46 -0400
Upload details
- Uploaded by:
- Marc Deslauriers
- Uploaded to:
- Disco
- Original maintainer:
- Ubuntu Developers
- Architectures:
- any all
- Section:
- web
- Urgency:
- Medium Urgency
See full publishing history Publishing
Series | Published | Component | Section |
---|
Downloads
File | Size | SHA-256 Checksum |
---|---|---|
apache2_2.4.38.orig.tar.gz | 8.8 MiB | 38d0b73aa313c28065bf58faf64cec12bf7c7d5196146107df2ad07541aa26a6 |
apache2_2.4.38-2ubuntu2.debian.tar.xz | 1010.4 KiB | be7968a473540db1ebf3ee16b928d88992437db7eebe6075ce7e5443cc19b042 |
apache2_2.4.38-2ubuntu2.dsc | 3.3 KiB | ad704ae78953047f5b3b2dfbbf5fd38aafd5672525490f8b82b8650ff0c00a65 |
Available diffs
- diff from 2.4.38-2ubuntu1 to 2.4.38-2ubuntu2 (10.3 KiB)
Binary packages built by this source
- apache2: No summary available for apache2 in ubuntu disco.
No description available for apache2 in ubuntu disco.
- apache2-bin: No summary available for apache2-bin in ubuntu disco.
No description available for apache2-bin in ubuntu disco.
- apache2-bin-dbgsym: No summary available for apache2-bin-dbgsym in ubuntu eoan.
No description available for apache2-bin-dbgsym in ubuntu eoan.
- apache2-data: No summary available for apache2-data in ubuntu disco.
No description available for apache2-data in ubuntu disco.
- apache2-dev: No summary available for apache2-dev in ubuntu eoan.
No description available for apache2-dev in ubuntu eoan.
- apache2-doc: No summary available for apache2-doc in ubuntu disco.
No description available for apache2-doc in ubuntu disco.
- apache2-ssl-dev: No summary available for apache2-ssl-dev in ubuntu disco.
No description available for apache2-ssl-dev in ubuntu disco.
- apache2-suexec-custom: No summary available for apache2-suexec-custom in ubuntu disco.
No description available for apache2-
suexec- custom in ubuntu disco.
- apache2-suexec-custom-dbgsym: No summary available for apache2-suexec-custom-dbgsym in ubuntu disco.
No description available for apache2-
suexec- custom- dbgsym in ubuntu disco.
- apache2-suexec-pristine: No summary available for apache2-suexec-pristine in ubuntu disco.
No description available for apache2-
suexec- pristine in ubuntu disco.
- apache2-suexec-pristine-dbgsym: No summary available for apache2-suexec-pristine-dbgsym in ubuntu disco.
No description available for apache2-
suexec- pristine- dbgsym in ubuntu disco.
- apache2-utils: No summary available for apache2-utils in ubuntu disco.
No description available for apache2-utils in ubuntu disco.
- apache2-utils-dbgsym: No summary available for apache2-utils-dbgsym in ubuntu disco.
No description available for apache2-
utils-dbgsym in ubuntu disco.
- libapache2-mod-md: No summary available for libapache2-mod-md in ubuntu disco.
No description available for libapache2-mod-md in ubuntu disco.
- libapache2-mod-proxy-uwsgi: No summary available for libapache2-mod-proxy-uwsgi in ubuntu disco.
No description available for libapache2-
mod-proxy- uwsgi in ubuntu disco.