[ MDVA-2011:070 ] apache
[email protected] Wed, 09 Nov 2011 21:43:01 +0100
| Newsgroups | gmane.linux.mandrake.security.announce |
|---|---|
| Message-ID | <[email protected]> |
This is a multi-part message in MIME format... ------------=_1320871510-2333-154 -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 _______________________________________________________________________ Mandriva Linux Advisory MDVA-2011:070 http://www.mandriva.com/security/ _______________________________________________________________________ Package : apache Date : November 9, 2011 Affected: 2011. _______________________________________________________________________ Problem Description: The fix for CVE-2011-3192 provided by the MDVSA-2011:130 advisory introduced regressions in the way httpd handled certain Range HTTP header values. The updated packages have been patched to correct thus issue. _______________________________________________________________________ References: https://issues.apache.org/bugzilla/show_bug.cgi?id=51878 _______________________________________________________________________ Updated Packages: Mandriva Linux 2011: 53343c99dfca1206d769d641ca9bd395 2011/i586/apache-base-2.2.21-0.3-mdv2011.0.i586.rpm 0d26a271200053260b4eb7d6d140791f 2011/i586/apache-devel-2.2.21-0.3-mdv2011.0.i586.rpm 73558082c697a238e8169000b149517f 2011/i586/apache-htcacheclean-2.2.21-0.3-mdv2011.0.i586.rpm 1e31fac0e6600a3a43349f2120b47eb9 2011/i586/apache-mod_authn_dbd-2.2.21-0.3-mdv2011.0.i586.rpm 46dc72bd295cd69f3d14f359b1053c41 2011/i586/apache-mod_cache-2.2.21-0.3-mdv2011.0.i586.rpm 248708c271dd16722e713d72428dc78e 2011/i586/apache-mod_dav-2.2.21-0.3-mdv2011.0.i586.rpm 44fccdf854620d65435d17c9498670c1 2011/i586/apache-mod_dbd-2.2.21-0.3-mdv2011.0.i586.rpm 3bb3550a73ae689e8eca3f9ff7d9e617 2011/i586/apache-mod_deflate-2.2.21-0.3-mdv2011.0.i586.rpm a868dab5130fca309649e06cca09240e 2011/i586/apache-mod_disk_cache-2.2.21-0.3-mdv2011.0.i586.rpm ad185e55d3437d726e50019b79dc54ec 2011/i586/apache-mod_file_cache-2.2.21-0.3-mdv2011.0.i586.rpm 58fe143e8f650d551bc1719a5fa34c25 2011/i586/apache-mod_ldap-2.2.21-0.3-mdv2011.0.i586.rpm d809a4477854dafd1b8766cd51cc26e2 2011/i586/apache-mod_mem_cache-2.2.21-0.3-mdv2011.0.i586.rpm adf98d78ec09651f1bbd8703afa4211e 2011/i586/apache-mod_proxy-2.2.21-0.3-mdv2011.0.i586.rpm 78d2c116874260be878ca70c8a9ea054 2011/i586/apache-mod_proxy_ajp-2.2.21-0.3-mdv2011.0.i586.rpm ca40df58598fc5a55aa934fbf624c8fd 2011/i586/apache-mod_proxy_scgi-2.2.21-0.3-mdv2011.0.i586.rpm a67c3330627742e7ca29697d0c6be2c2 2011/i586/apache-mod_reqtimeout-2.2.21-0.3-mdv2011.0.i586.rpm 52bd70090ce1ddae358df2f39ad2ee7d 2011/i586/apache-mod_ssl-2.2.21-0.3-mdv2011.0.i586.rpm 33fc3d2c5639039017418831b530d85a 2011/i586/apache-modules-2.2.21-0.3-mdv2011.0.i586.rpm 89dcbe1bbda537f84162ccc500f81904 2011/i586/apache-mod_userdir-2.2.21-0.3-mdv2011.0.i586.rpm 33e4a2a29774e7f854886d25f4aeb444 2011/i586/apache-mpm-event-2.2.21-0.3-mdv2011.0.i586.rpm 7213f8005dcbda325b67d764135ec664 2011/i586/apache-mpm-itk-2.2.21-0.3-mdv2011.0.i586.rpm 56cd2623b3599d81c8266a476a0e3be5 2011/i586/apache-mpm-peruser-2.2.21-0.3-mdv2011.0.i586.rpm 4d2d4e3dee3e33f27560f30961fa9104 2011/i586/apache-mpm-prefork-2.2.21-0.3-mdv2011.0.i586.rpm 5d7b6befa8a851909427cc33b4dbcf51 2011/i586/apache-mpm-worker-2.2.21-0.3-mdv2011.0.i586.rpm e8c203172909fb97a91be52a9488f362 2011/i586/apache-source-2.2.21-0.3-mdv2011.0.i586.rpm ad1ea4ff3722c4f4b22eeaa92da659b0 2011/SRPMS/apache-2.2.21-0.3.src.rpm Mandriva Linux 2011/X86_64: 1fc40b88dbd9909a8d34edee22d03a08 2011/x86_64/apache-base-2.2.21-0.3-mdv2011.0.x86_64.rpm 52b363b22246a103e3562700d4a0d475 2011/x86_64/apache-devel-2.2.21-0.3-mdv2011.0.x86_64.rpm e3b014f1ba2ae210ec4c3d7b89560dd8 2011/x86_64/apache-htcacheclean-2.2.21-0.3-mdv2011.0.x86_64.rpm f8a30b39b4de05a7b23bcc690e633112 2011/x86_64/apache-mod_authn_dbd-2.2.21-0.3-mdv2011.0.x86_64.rpm e738fbb7ff9150f979792efc655277a3 2011/x86_64/apache-mod_cache-2.2.21-0.3-mdv2011.0.x86_64.rpm 36e551657a8ecc135286e641fa8b4d5c 2011/x86_64/apache-mod_dav-2.2.21-0.3-mdv2011.0.x86_64.rpm 5eeb3ed9f3fd5da5658452b09b7ee677 2011/x86_64/apache-mod_dbd-2.2.21-0.3-mdv2011.0.x86_64.rpm f914d7bb9518cdf1db3aa03279d35d87 2011/x86_64/apache-mod_deflate-2.2.21-0.3-mdv2011.0.x86_64.rpm 08e0c74357ee77481dbd3d066d20c423 2011/x86_64/apache-mod_disk_cache-2.2.21-0.3-mdv2011.0.x86_64.rpm 36aed9509ee043895cde1a1ce8b5dc97 2011/x86_64/apache-mod_file_cache-2.2.21-0.3-mdv2011.0.x86_64.rpm a7fe268a89985bede16d07b6d06d4037 2011/x86_64/apache-mod_ldap-2.2.21-0.3-mdv2011.0.x86_64.rpm bb17664bc07a08bde2909009aa0288ea 2011/x86_64/apache-mod_mem_cache-2.2.21-0.3-mdv2011.0.x86_64.rpm 97698a67c9c00b326bb3eb872f8f9034 2011/x86_64/apache-mod_proxy-2.2.21-0.3-mdv2011.0.x86_64.rpm 1786bd00773e54909a73fdc6bcd77674 2011/x86_64/apache-mod_proxy_ajp-2.2.21-0.3-mdv2011.0.x86_64.rpm 6c1d1d4d8b92c34c31efcecef92498eb 2011/x86_64/apache-mod_proxy_scgi-2.2.21-0.3-mdv2011.0.x86_64.rpm 6d2f5ce2bdc5ef12f9b2c581b52327f5 2011/x86_64/apache-mod_reqtimeout-2.2.21-0.3-mdv2011.0.x86_64.rpm 4bbb8922484d60a44aeb0d6dd587da1f 2011/x86_64/apache-mod_ssl-2.2.21-0.3-mdv2011.0.x86_64.rpm c234b6e8ea3a26c385e19e41ac7dd0a4 2011/x86_64/apache-modules-2.2.21-0.3-mdv2011.0.x86_64.rpm 260b8cc4db134308bbb6e5a706def514 2011/x86_64/apache-mod_userdir-2.2.21-0.3-mdv2011.0.x86_64.rpm b0578917fa4eb07a7c62043949dc23ff 2011/x86_64/apache-mpm-event-2.2.21-0.3-mdv2011.0.x86_64.rpm 7595c53d7ff3330bbe3b2dacbca5c493 2011/x86_64/apache-mpm-itk-2.2.21-0.3-mdv2011.0.x86_64.rpm ea32a0676e8f72294ee08ecb0e0213f8 2011/x86_64/apache-mpm-peruser-2.2.21-0.3-mdv2011.0.x86_64.rpm 69fba9d398cab629f78e87ad51ee3fea 2011/x86_64/apache-mpm-prefork-2.2.21-0.3-mdv2011.0.x86_64.rpm 1d1377f6f12a700b915849cd2da2238e 2011/x86_64/apache-mpm-worker-2.2.21-0.3-mdv2011.0.x86_64.rpm 67dee2d523345c6c1a3af4a1b7f3334e 2011/x86_64/apache-source-2.2.21-0.3-mdv2011.0.x86_64.rpm ad1ea4ff3722c4f4b22eeaa92da659b0 2011/SRPMS/apache-2.2.21-0.3.src.rpm _______________________________________________________________________ To upgrade automatically use MandrivaUpdate or urpmi. The verification of md5 checksums and GPG signatures is performed automatically for you. All packages are signed by Mandriva for security. You can obtain the GPG public key of the Mandriva Security Team by executing: gpg --recv-keys --keyserver pgp.mit.edu 0x22458A98 You can view other update advisories for Mandriva Linux at: http://www.mandriva.com/security/advisories If you want to report vulnerabilities, please contact security_(at)_mandriva.com _______________________________________________________________________ Type Bits/KeyID Date User ID pub 1024D/22458A98 2000-07-10 Mandriva Security Team <security*mandriva.com> -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.11 (GNU/Linux) iD8DBQFOuruAmqjQ0CJFipgRAm56AKCjp2afmoLIHTYkFPwnf6Z7ZmauMgCg8kX/ AaQyQ2NUvPu1rzIePNE7Euk= =Q43x -----END PGP SIGNATURE----- ------------=_1320871510-2333-154 Content-Type: text/plain; charset="UTF-8"; name="message-footer.txt" Content-Disposition: inline; filename="message-footer.txt" Content-Transfer-Encoding: quoted-printable To unsubscribe, send a email to [email protected] with this subject : unsubscribe security-announce _______________________________________________________ Want to buy your Pack or Services from Mandriva?=20 Go to http://www.mandrivastore.com Join the Club : http://www.mandrivaclub.com _______________________________________________________ ------------=_1320871510-2333-154--