Accepted modsecurity-apache 2.8.0-2~bpo70+1 (source i386 all) into wheezy-backports, wheezy-backports
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256
Format: 1.8
Date: Mon, 13 Oct 2014 17:23:31 +0000
Source: modsecurity-apache
Binary: libapache2-mod-security2 libapache2-modsecurity
Architecture: source i386 all
Version: 2.8.0-2~bpo70+1
Distribution: wheezy-backports
Urgency: high
Maintainer: Alberto Gonzalez Iniesta <agi@inittab.org>
Changed-By: Alberto Gonzalez Iniesta <agi@inittab.org>
Description:
libapache2-mod-security2 - Tighten web applications security for Apache
libapache2-modsecurity - Dummy transitional package
Closes: 666848 705252 710217 734573
Changes:
modsecurity-apache (2.8.0-2~bpo70+1) wheezy-backports; urgency=low
.
* Backport to Wheezy (Closes: #705252)
* debian/control: Change apache2-dev to
apache2-prefork-dev|apache2-threaded-dev, since they don't provide
apache2-dev virtual package in Wheezy.
* debian/rules: remove dh_apache2. Not present in Wheezy.
* libapache2-mod-security2.install: Add tasks (files) done in dh_apache2
* Restore libapache2-mod-security2.(prerm|postinst) done in dh_apache2
* security.conf: Use Include intead of IncludeOptional
.
modsecurity-apache (2.8.0-2) unstable; urgency=medium
.
* Move libapache2-mod-security2.maintscript to
libapache2-modsecurity.maintscript, since the previous conffiles
were in the latter.
* libapache2-modsecurity. Remove dangling symlinks in mods-enabled on
upgrades.
.
modsecurity-apache (2.8.0-1) unstable; urgency=medium
.
* New upstream version
.
modsecurity-apache (2.7.7-2) unstable; urgency=medium
.
* Use dh-autoreconf to fix FTBFS on ppc64el. (Closes: #734573)
Thanks Logan Rosen for the patch.
.
modsecurity-apache (2.7.7-1) unstable; urgency=low
.
* New upstream version
* Bumped Standards-Version to 3.9.5
* Renamed binary package so that it follows naming standards
.
modsecurity-apache (2.7.5-1) unstable; urgency=low
.
* New upstream version
.
modsecurity-apache (2.7.4-1) unstable; urgency=low
.
* New upstream version.
* Remove doc-base since doc files were removed upstream.
.
modsecurity-apache (2.6.6-9) unstable; urgency=high
.
* Applied upstream patch to fix NULL pointer dereference.
CVE-2013-2765. (Closes: #710217)
.
modsecurity-apache (2.6.6-8) unstable; urgency=low
.
* Upload to unstable.
.
modsecurity-apache (2.6.6-7) experimental; urgency=low
.
[Arno Töll]
* Add support for Apache 2.4 using the patch provided by Ondřej Surý
(Closes: #666848)
* Move apache2 configuration files to their canonical name:
- mod-security.load -> security2.load
- mod-security.conf -> security2.conf
Thus, also slightly raise the debhelper build dependency to 8.1.
* Update security2.conf for changes in Apache 2.4
.
modsecurity-apache (2.6.6-6+deb7u2) wheezy-security; urgency=high
.
* Non-maintainer upload by the Security Team.
* Add CVE-2013-5705.patch patch.
CVE-2013-5705: bypass of intended rules via chunked requests.
Checksums-Sha1:
079e77d03db5363d1e78ef54b6599c799a55b940 2030 modsecurity-apache_2.8.0-2~bpo70+1.dsc
a48bb7f7f2565cb35230e2a91798d3c24f4b9ce0 11392 modsecurity-apache_2.8.0-2~bpo70+1.debian.tar.gz
9c1627b2cf3e9c99e2f20761eafa7bf3850bfce9 298688 libapache2-mod-security2_2.8.0-2~bpo70+1_i386.deb
7652291eb160d0e26eaa534865c2060147ca439e 30342 libapache2-modsecurity_2.8.0-2~bpo70+1_all.deb
Checksums-Sha256:
40d2be2f3bc1b50f827b807ea09a7899af48c61eb4469d07ac9597e7a468a636 2030 modsecurity-apache_2.8.0-2~bpo70+1.dsc
873384effbcae6210866e42d895075bf9e28306c472d4ba9568d1c6fb4c826f0 11392 modsecurity-apache_2.8.0-2~bpo70+1.debian.tar.gz
0301e63f63a90d5fede0bc776ae2f26b2f7fce2364e4778420360c6b53a34df8 298688 libapache2-mod-security2_2.8.0-2~bpo70+1_i386.deb
4cc8f9c8300015a1553e1862d0285b21221aa86eb58e3287beefea37f2a37151 30342 libapache2-modsecurity_2.8.0-2~bpo70+1_all.deb
Files:
846b86079fab0863d505596025a59311 2030 httpd optional modsecurity-apache_2.8.0-2~bpo70+1.dsc
fee8a97cb0d241377e51d714384b7ba1 11392 httpd optional modsecurity-apache_2.8.0-2~bpo70+1.debian.tar.gz
c1ae36d4d941307212f49a61671f88eb 298688 httpd optional libapache2-mod-security2_2.8.0-2~bpo70+1_i386.deb
84e71386d28f5ac2e586d857750ed947 30342 oldlibs extra libapache2-modsecurity_2.8.0-2~bpo70+1_all.deb
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1
iQIcBAEBCAAGBQJUPQRYAAoJEACbM3VrmqpVD3kP/1CF3m+5+SENEWDt2IFuav+H
wA/BzW/fUgG6Md3a/LLyOzZudKGItSqQysW4EX4whujBS4y7W/chsvLuccoJz3N+
ex5/y65xenkSJH3w4R/qx2plbUEKAHfJr9yUVysrMCNlKmlT51CVMs4uZx+4+vVw
BxymBgEBk2lI4whv6XyV8F/XO/bUKJAuGURl8F3TPSCLIr0EfgZ5ZVNJV0KP3LVm
TmH7WgnMHLwTtYgWvzpeLO3r0qg6haYSbKtUBb/x1R0hdx/nN3ezW41fnQP5r3nC
/khE80vSGL4P1GufrmnnW+roVUq5At7iX1AUid4HreMI0au+B4gyoS0kbXSqajX+
+3jCcjIqLL5ORuNjDFG3V7PfPbxMdYgcfsfpU5Kdmrs9YVQ6Ch3EIHmgrvFKdXY/
/krm4eM7x5iHfNWbh2Kq0CGuaVALZHQLo9aFJ0q5xLRK8CkbocCBAgP5eaZiSlAL
6FwRr656JvlfJYVTC87HEUWdDU/EA+4CiOEbBI47+kSzRbfpmcKL1mE8I0Gu+Evt
DKt0+fQtNyH1EbmVtCkfDH9jFFMl48VHbzO/leBBlHNye4cDnzZJLFXbZU+V2JGE
lEg9xosy8yQWFQWDr9k2aRwi2MopylaUyTu+y/yKNN4Kr2/8kByKC9g9mvWHmf+z
ZK5gRRn7G/d/0RCbqrqe
=Y1WM
-----END PGP SIGNATURE-----
Reply to: