svn commit: r85082 - dev/httpd release/httpd

[email protected] Mon, 08 Jun 2026 12:04:26 -0000
Newsgroups gmane.comp.apache.cvs
Message-ID <178092026679.4042962.4352418941209441619@svn03-he-fi>
Author: covener
Date: Mon Jun  8 12:04:26 2026
New Revision: 85082

Log:
Add release httpd-2.4.68 from voted 2.4.68-rc1

Added:
   release/httpd/CHANGES_2.4.68
      - copied unchanged from r85081, dev/httpd/CHANGES_2.4.68
   release/httpd/httpd-2.4.68.tar.bz2
      - copied unchanged from r85081, dev/httpd/httpd-2.4.68-rc1.tar.bz2
   release/httpd/httpd-2.4.68.tar.bz2.asc
      - copied unchanged from r85081, dev/httpd/httpd-2.4.68-rc1.tar.bz2.asc
   release/httpd/httpd-2.4.68.tar.bz2.sha256
      - copied, changed from r85081, dev/httpd/httpd-2.4.68-rc1.tar.bz2.sha256
   release/httpd/httpd-2.4.68.tar.bz2.sha512
      - copied, changed from r85081, dev/httpd/httpd-2.4.68-rc1.tar.bz2.sha512
   release/httpd/httpd-2.4.68.tar.gz
      - copied unchanged from r85081, dev/httpd/httpd-2.4.68-rc1.tar.gz
   release/httpd/httpd-2.4.68.tar.gz.asc
      - copied unchanged from r85081, dev/httpd/httpd-2.4.68-rc1.tar.gz.asc
   release/httpd/httpd-2.4.68.tar.gz.sha256
      - copied, changed from r85081, dev/httpd/httpd-2.4.68-rc1.tar.gz.sha256
   release/httpd/httpd-2.4.68.tar.gz.sha512
      - copied, changed from r85081, dev/httpd/httpd-2.4.68-rc1.tar.gz.sha512
Deleted:
   dev/httpd/CHANGES_2.4
   dev/httpd/CHANGES_2.4.68
   dev/httpd/httpd-2.4.68-rc1-deps.tar.bz2
   dev/httpd/httpd-2.4.68-rc1-deps.tar.bz2.asc
   dev/httpd/httpd-2.4.68-rc1-deps.tar.bz2.sha256
   dev/httpd/httpd-2.4.68-rc1-deps.tar.bz2.sha512
   dev/httpd/httpd-2.4.68-rc1-deps.tar.gz
   dev/httpd/httpd-2.4.68-rc1-deps.tar.gz.asc
   dev/httpd/httpd-2.4.68-rc1-deps.tar.gz.sha256
   dev/httpd/httpd-2.4.68-rc1-deps.tar.gz.sha512
   dev/httpd/httpd-2.4.68-rc1.tar.bz2
   dev/httpd/httpd-2.4.68-rc1.tar.bz2.asc
   dev/httpd/httpd-2.4.68-rc1.tar.bz2.sha256
   dev/httpd/httpd-2.4.68-rc1.tar.bz2.sha512
   dev/httpd/httpd-2.4.68-rc1.tar.gz
   dev/httpd/httpd-2.4.68-rc1.tar.gz.asc
   dev/httpd/httpd-2.4.68-rc1.tar.gz.sha256
   dev/httpd/httpd-2.4.68-rc1.tar.gz.sha512
Modified:
   release/httpd/Announcement2.4.html
   release/httpd/Announcement2.4.txt
   release/httpd/CHANGES_2.4

Modified: release/httpd/Announcement2.4.html
==============================================================================
--- release/httpd/Announcement2.4.html	Mon Jun  8 11:28:43 2026	(r85081)
+++ release/httpd/Announcement2.4.html	Mon Jun  8 12:04:26 2026	(r85082)
@@ -49,15 +49,15 @@
 <div class="banner"></div>
 
 <h1>
-                       Apache HTTP Server 2.4.67 Released
+                       Apache HTTP Server 2.4.68 Released
 </h1>
 <p>
-   May 04, 2026
+   June 08, 2026
 </p>
 <p>
    The Apache Software Foundation and the Apache HTTP Server Project are
    pleased to <a href="https://www.apache.org/dist/httpd/Announcement2.4.html">announce</a>
-   the release of version 2.4.67 of the Apache
+   the release of version 2.4.68 of the Apache
    HTTP Server ("Apache").  This version of Apache is our latest GA
    release of the new generation 2.4.x branch of Apache HTTPD and
    represents fifteen years of innovation by the project, and is
@@ -69,7 +69,7 @@
    encourage users of all prior versions to upgrade.
 </p>
 <p>
-   Apache HTTP Server 2.4.67 is available for download from:
+   Apache HTTP Server 2.4.68 is available for download from:
 </p>
 <dl>
   <dd><a href="https://httpd.apache.org/download.cgi"
@@ -77,7 +77,7 @@
 </dl>
 <p>
    Please see the <a href="./CHANGES_2.4">CHANGES_2.4</a> file, linked from the download page, for a
-   full list of changes.  A condensed list, <a href="./CHANGES_2.4.67">CHANGES_2.4.67</a> includes only
+   full list of changes.  A condensed list, <a href="./CHANGES_2.4.68">CHANGES_2.4.68</a> includes only
    those changes introduced since the prior 2.4 release.  A summary of all 
    of the security vulnerabilities addressed in this and earlier releases 
    is available:

Modified: release/httpd/Announcement2.4.txt
==============================================================================
--- release/httpd/Announcement2.4.txt	Mon Jun  8 11:28:43 2026	(r85081)
+++ release/httpd/Announcement2.4.txt	Mon Jun  8 12:04:26 2026	(r85082)
@@ -1,9 +1,9 @@
-                Apache HTTP Server 2.4.67 Released
+                Apache HTTP Server 2.4.68 Released
 
-   May 04, 2026
+   June 08, 2026
 
    The Apache Software Foundation and the Apache HTTP Server Project
-   are pleased to announce the release of version 2.4.67 of the Apache
+   are pleased to announce the release of version 2.4.68 of the Apache
    HTTP Server ("Apache").  This version of Apache is our latest GA
    release of the new generation 2.4.x branch of Apache HTTPD and
    represents fifteen years of innovation by the project, and is
@@ -13,7 +13,7 @@
    We consider this release to be the best version of Apache available, and
    encourage users of all prior versions to upgrade.
 
-   Apache HTTP Server 2.4.67 is available for download from:
+   Apache HTTP Server 2.4.68 is available for download from:
 
      https://httpd.apache.org/download.cgi
 
@@ -24,7 +24,7 @@
      https://httpd.apache.org/docs/trunk/new_features_2_4.html
 
    Please see the CHANGES_2.4 file, linked from the download page, for a
-   full list of changes. A condensed list, CHANGES_2.4.67 includes only
+   full list of changes. A condensed list, CHANGES_2.4.68 includes only
    those changes introduced since the prior 2.4 release.  A summary of all 
    of the security vulnerabilities addressed in this and earlier releases 
    is available:

Modified: release/httpd/CHANGES_2.4
==============================================================================
--- release/httpd/CHANGES_2.4	Mon Jun  8 11:28:43 2026	(r85081)
+++ release/httpd/CHANGES_2.4	Mon Jun  8 12:04:26 2026	(r85082)
@@ -1,4 +1,57 @@
                                                          -*- coding: utf-8 -*-
+Changes with Apache 2.4.68
+
+  *) mod_ssl, ab: Add support for OpenSSL 4.0.  [Joe Orton]
+
+  *) mod_ssl: Add SerialNumber as a recognized attribute type for SSL
+     distinguished name variables.  [Michael Osipov <michaelo apache.org>,
+     Benjamin Demarteau <benjamin.demarteau liege.be>]
+
+  *) mod_ssl: Set auth type to "ClientCert" when client certificate authentication
+     has been performed.  [Michael Osipov <michaelo apache.org>]
+
+  *) mod_include: Don't print any of if/elsif/else content when
+     a conditional evaluation returns an error. [Eric Covener]
+
+  *) mod_unixd: CoreDumpDirectory requires enabling tracing on FreeBSD 11+.
+     PR 65819.  [David CARLIER <devnexen gmail.com>]
+
+  *) mod_file_cache: Fix crashes for mmap'ed files under threaded
+     MPMs. PR 69901. barr.israel <barr.israel campus.technion.ac.il>
+
+  *) core: Add support for %{m}t in ErrorLogFormat to log milli-second
+     time resolution (in addition to existing %{u}t for micro-seconds).
+     [Luboš Uhliarik <luhliari redhat.com>]
+
+  *) mod_unixd: Drop test that effective user ID is zero in
+     a chroot configuration.  PR 69767.
+     [Bastien Roucaries <rouca debian.org>]
+
+  *) mod_proxy_balancer: Include nonce in XML output.  PR 63074.
+     Federico Mennite <federico.mennite lifeware.ch>
+
+  *) mod_http2: update to version 2.0.42
+     Fix excessive file description use for non-TLS frontend connections when
+     sending files. Fixes <https://github.com/icing/mod_h2/issues/325>
+     [Stefan Eissing]
+
+  *) mod_http2: update to version 2.0.41
+     Fix cookie header accounting against LimitRequestFields.
+     [Stefan Eissing]
+
+  *) mod_http2: update to version 2.0.40
+     Fix error handling on upload requests when server runs out of file
+     handles that left beam bucket callbacks in place, potentially using
+     no longer valid references. Only applies on platforms with pipes
+     and file descriptor limits not healthy for a network server.
+     [Stefan Eissing]
+
+  *) mod_dav_fs: Return a 404 for DELETE if deletion fails because the
+     resource no longer exists.  PR 60746.  [Joe Orton]
+
+  *) mod_proxy_hcheck: Fix healthcheck disabled due to child restart while
+     updating. [Yann Ylavic]
+
 Changes with Apache 2.4.67
 
   *) SECURITY: CVE-2026-34059: Apache HTTP Server: mod_proxy_ajp:
@@ -6,8 +59,6 @@ Changes with Apache 2.4.67
      (cve.mitre.org)
      Buffer Over-read vulnerability in Apache HTTP Server.
      This issue affects Apache HTTP Server: through 2.4.66.
-     Users are recommended to upgrade to version 2.4.67, which fixes
-     the issue.
      Credits: Elhanan Haenel
 
   *) SECURITY: CVE-2026-34032: Apache HTTP Server: mod_proxy_ajp:
@@ -16,8 +67,6 @@ Changes with Apache 2.4.67
      Improper Null Termination, Out-of-bounds Read vulnerability in
      Apache HTTP Server.
      This issue affects Apache HTTP Server: through 2.4.66.
-     Users are recommended to upgrade to version 2.4.67, which fixes
-     the issue.
      Credits: Tianshuo Han (<[email protected]>)
 
   *) SECURITY: CVE-2026-33857: Apache HTTP Server: Off-by-one OOB
@@ -25,8 +74,6 @@ Changes with Apache 2.4.67
      Out-of-bounds Read vulnerability in mod_proxy_ajp of
      Apache HTTP Server.
      This issue affects Apache HTTP Server: through 2.4.66.
-     Users are recommended to upgrade to version 2.4.67, which fixes
-     the issue.
      Credits: Elhanan Haenel
 
   *) SECURITY: CVE-2026-33523: Apache HTTP Server: multiple modules:
@@ -35,8 +82,6 @@ Changes with Apache 2.4.67
      HTTP response splitting vulnerability in multiple Apache HTTP
      Server modules with untrusted or compromised backend servers.
      This issue affects Apache HTTP Server: from through 2.4.66.
-     Users are recommended to upgrade to version 2.4.67, which fixes
-     the issue.
      Credits: Haruki Oyama (Waseda University)
 
   *) SECURITY: CVE-2026-33007: Apache HTTP Server: mod_authn_socache
@@ -45,8 +90,6 @@ Changes with Apache 2.4.67
      HTTP Server 2.4.66 and earlier allows an unauthenticated remote
      user to crash a child process in a caching forward proxy
      configuration.
-     Users are recommended to upgrade to version 2.4.67, which fixes
-     this issue.
      Credits: Pavel Kohout, Aisle Research, Aisle.com
 
   *) SECURITY: CVE-2026-33006: Apache HTTP Server: mod_auth_digest
@@ -54,8 +97,6 @@ Changes with Apache 2.4.67
      A timing attack against mod_auth_digest in Apache HTTP Server
      2.4.66 allows a bypass of Digest authentication by a remote
      attacker.
-     Users are recommended to upgrade to version 2.4.67, which fixes
-     this issue.
      Credits: Nitescu Lucian
 
   *) SECURITY: CVE-2026-29169: Apache HTTP Server: mod_dav_lock
@@ -66,7 +107,7 @@ Changes with Apache 2.4.67
      mod_dav or mod_dav_fs.
      The only known use-case for mod_dav_lock was mod_dav_svn from
      Apache Subversion earlier than version 1.2.0.
-     Users are recommended to upgrade to version 2.4.66, which fixes
+     Users are recommended to upgrade to version 2.4.67, which fixes
      this issue, or remove mod_dav_lock.
      Credits: Pavel Kohout, Aisle Research, Aisle.com
 
@@ -77,8 +118,6 @@ Changes with Apache 2.4.67
      data.
      This issue affects Apache HTTP Server: from 2.4.30 through
      2.4.66.
-     Users are recommended to upgrade to version 2.4.67, which fixes
-     the issue.
      Credits: Pavel Kohout, Aisle Research, Aisle.com
 
   *) SECURITY: CVE-2026-28780: Apache HTTP Server: buffer overflow in
@@ -90,8 +129,6 @@ Changes with Apache 2.4.67
      and cause it to write 4 attacker controlled bytes after the end
      of a heap based buffer.
      This issue affects Apache HTTP Server: through 2.4.66.
-     Users are recommended to upgrade to version 2.4.67, which fixes
-     the issue.
      Credits: Andrew Lacambra
 
   *) SECURITY: CVE-2026-24072: Apache HTTP Server: mod_rewrite
@@ -99,8 +136,6 @@ Changes with Apache 2.4.67
      An escalation of privilege bug in various modules in Apache HTTP
      2.4.66 and earlier allows local .htaccess authors to read files
      with the privileges of the httpd user.
-     Users are recommended to upgrade to version 2.4.67, which fixes
-     this issue.
      Credits: y7syeu
 
   *) SECURITY: CVE-2026-23918: Apache HTTP Server: http2: double free
@@ -108,8 +143,6 @@ Changes with Apache 2.4.67
      Double Free and possible RCE vulnerability in Apache HTTP Server
      with the HTTP/2 protocol.
      This issue affects Apache HTTP Server: 2.4.66.
-     Users are recommended to upgrade to version 2.4.67, which fixes
-     the issue.
      Credits: Bartlomiej Dmitruk, striga.ai
 
   *) mod_md: update to version 2.6.10

Copied: release/httpd/CHANGES_2.4.68 (from r85081, dev/httpd/CHANGES_2.4.68)
==============================================================================
--- /dev/null	00:00:00 1970	(empty, because file is newly added)
+++ release/httpd/CHANGES_2.4.68	Mon Jun  8 12:04:26 2026	(r85082, copy of r85081, dev/httpd/CHANGES_2.4.68)
@@ -0,0 +1,54 @@
+                                                         -*- coding: utf-8 -*-
+Changes with Apache 2.4.68
+
+  *) mod_ssl, ab: Add support for OpenSSL 4.0.  [Joe Orton]
+
+  *) mod_ssl: Add SerialNumber as a recognized attribute type for SSL
+     distinguished name variables.  [Michael Osipov <michaelo apache.org>,
+     Benjamin Demarteau <benjamin.demarteau liege.be>]
+
+  *) mod_ssl: Set auth type to "ClientCert" when client certificate authentication
+     has been performed.  [Michael Osipov <michaelo apache.org>]
+
+  *) mod_include: Don't print any of if/elsif/else content when
+     a conditional evaluation returns an error. [Eric Covener]
+
+  *) mod_unixd: CoreDumpDirectory requires enabling tracing on FreeBSD 11+.
+     PR 65819.  [David CARLIER <devnexen gmail.com>]
+
+  *) mod_file_cache: Fix crashes for mmap'ed files under threaded
+     MPMs. PR 69901. barr.israel <barr.israel campus.technion.ac.il>
+
+  *) core: Add support for %{m}t in ErrorLogFormat to log milli-second
+     time resolution (in addition to existing %{u}t for micro-seconds).
+     [Luboš Uhliarik <luhliari redhat.com>]
+
+  *) mod_unixd: Drop test that effective user ID is zero in
+     a chroot configuration.  PR 69767.
+     [Bastien Roucaries <rouca debian.org>]
+
+  *) mod_proxy_balancer: Include nonce in XML output.  PR 63074.
+     Federico Mennite <federico.mennite lifeware.ch>
+
+  *) mod_http2: update to version 2.0.42
+     Fix excessive file description use for non-TLS frontend connections when
+     sending files. Fixes <https://github.com/icing/mod_h2/issues/325>
+     [Stefan Eissing]
+
+  *) mod_http2: update to version 2.0.41
+     Fix cookie header accounting against LimitRequestFields.
+     [Stefan Eissing]
+
+  *) mod_http2: update to version 2.0.40
+     Fix error handling on upload requests when server runs out of file
+     handles that left beam bucket callbacks in place, potentially using
+     no longer valid references. Only applies on platforms with pipes
+     and file descriptor limits not healthy for a network server.
+     [Stefan Eissing]
+
+  *) mod_dav_fs: Return a 404 for DELETE if deletion fails because the
+     resource no longer exists.  PR 60746.  [Joe Orton]
+
+  *) mod_proxy_hcheck: Fix healthcheck disabled due to child restart while
+     updating. [Yann Ylavic]
+

Copied: release/httpd/httpd-2.4.68.tar.bz2 (from r85081, dev/httpd/httpd-2.4.68-rc1.tar.bz2)
==============================================================================
Binary file (source and/or target). No diff available.

Copied: release/httpd/httpd-2.4.68.tar.bz2.asc (from r85081, dev/httpd/httpd-2.4.68-rc1.tar.bz2.asc)
==============================================================================
--- /dev/null	00:00:00 1970	(empty, because file is newly added)
+++ release/httpd/httpd-2.4.68.tar.bz2.asc	Mon Jun  8 12:04:26 2026	(r85082, copy of r85081, dev/httpd/httpd-2.4.68-rc1.tar.bz2.asc)
@@ -0,0 +1,17 @@
+-----BEGIN PGP SIGNATURE-----
+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+=LfUm
+-----END PGP SIGNATURE-----

Copied and modified: release/httpd/httpd-2.4.68.tar.bz2.sha256 (from r85081, dev/httpd/httpd-2.4.68-rc1.tar.bz2.sha256)
==============================================================================
--- dev/httpd/httpd-2.4.68-rc1.tar.bz2.sha256	Mon Jun  8 11:28:43 2026	(r85081, copy source)
+++ release/httpd/httpd-2.4.68.tar.bz2.sha256	Mon Jun  8 12:04:26 2026	(r85082)
@@ -1 +1 @@
-68c74d4df38c26bed4dfbdb8f3baf1eb532f3872357becc1bba5d136f6b63c06 *httpd-2.4.68-rc1.tar.bz2
+68c74d4df38c26bed4dfbdb8f3baf1eb532f3872357becc1bba5d136f6b63c06 *httpd-2.4.68.tar.bz2

Copied and modified: release/httpd/httpd-2.4.68.tar.bz2.sha512 (from r85081, dev/httpd/httpd-2.4.68-rc1.tar.bz2.sha512)
==============================================================================
--- dev/httpd/httpd-2.4.68-rc1.tar.bz2.sha512	Mon Jun  8 11:28:43 2026	(r85081, copy source)
+++ release/httpd/httpd-2.4.68.tar.bz2.sha512	Mon Jun  8 12:04:26 2026	(r85082)
@@ -1 +1 @@
-134a5bbd3ffe97523ac750490531bcb9441c532cedf0229aa006aa1368e9d25040507c6f519bed6754044f62c371f7c7f9a11b6a311f79b9680d478bf4373eb3 *httpd-2.4.68-rc1.tar.bz2
+134a5bbd3ffe97523ac750490531bcb9441c532cedf0229aa006aa1368e9d25040507c6f519bed6754044f62c371f7c7f9a11b6a311f79b9680d478bf4373eb3 *httpd-2.4.68.tar.bz2

Copied: release/httpd/httpd-2.4.68.tar.gz (from r85081, dev/httpd/httpd-2.4.68-rc1.tar.gz)
==============================================================================
Binary file (source and/or target). No diff available.

Copied: release/httpd/httpd-2.4.68.tar.gz.asc (from r85081, dev/httpd/httpd-2.4.68-rc1.tar.gz.asc)
==============================================================================
--- /dev/null	00:00:00 1970	(empty, because file is newly added)
+++ release/httpd/httpd-2.4.68.tar.gz.asc	Mon Jun  8 12:04:26 2026	(r85082, copy of r85081, dev/httpd/httpd-2.4.68-rc1.tar.gz.asc)
@@ -0,0 +1,17 @@
+-----BEGIN PGP SIGNATURE-----
+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+=2tcl
+-----END PGP SIGNATURE-----

Copied and modified: release/httpd/httpd-2.4.68.tar.gz.sha256 (from r85081, dev/httpd/httpd-2.4.68-rc1.tar.gz.sha256)
==============================================================================
--- dev/httpd/httpd-2.4.68-rc1.tar.gz.sha256	Mon Jun  8 11:28:43 2026	(r85081, copy source)
+++ release/httpd/httpd-2.4.68.tar.gz.sha256	Mon Jun  8 12:04:26 2026	(r85082)
@@ -1 +1 @@
-ed9a9d4500fb48bb28eaffb3ba71d06ccf86d498fa13ab9f781da010cc488498 *httpd-2.4.68-rc1.tar.gz
+ed9a9d4500fb48bb28eaffb3ba71d06ccf86d498fa13ab9f781da010cc488498 *httpd-2.4.68.tar.gz

Copied and modified: release/httpd/httpd-2.4.68.tar.gz.sha512 (from r85081, dev/httpd/httpd-2.4.68-rc1.tar.gz.sha512)
==============================================================================
--- dev/httpd/httpd-2.4.68-rc1.tar.gz.sha512	Mon Jun  8 11:28:43 2026	(r85081, copy source)
+++ release/httpd/httpd-2.4.68.tar.gz.sha512	Mon Jun  8 12:04:26 2026	(r85082)
@@ -1 +1 @@
-de3d6e2dd37a600b99b63b6740a06348d6f7642109f3c35e7eb1b82088ade8a5da9145b52c232587b9c2604c33ae908d0009ada4ea3168679e7f061b3135112d *httpd-2.4.68-rc1.tar.gz
+de3d6e2dd37a600b99b63b6740a06348d6f7642109f3c35e7eb1b82088ade8a5da9145b52c232587b9c2604c33ae908d0009ada4ea3168679e7f061b3135112d *httpd-2.4.68.tar.gz