[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Accepted apache2 2.2.22-4 (source i386 all)



-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Format: 1.8
Date: Sun, 15 Apr 2012 23:41:43 +0200
Source: apache2
Binary: apache2.2-common apache2.2-bin apache2-mpm-worker apache2-mpm-prefork apache2-mpm-event apache2-mpm-itk apache2-utils apache2-suexec apache2-suexec-custom apache2 apache2-doc apache2-prefork-dev apache2-threaded-dev apache2-dbg
Architecture: source i386 all
Version: 2.2.22-4
Distribution: unstable
Urgency: high
Maintainer: Debian Apache Maintainers <debian-apache@lists.debian.org>
Changed-By: Stefan Fritsch <sf@debian.org>
Description: 
 apache2    - Apache HTTP Server metapackage
 apache2-dbg - Apache debugging symbols
 apache2-doc - Apache HTTP Server documentation
 apache2-mpm-event - Apache HTTP Server - event driven model
 apache2-mpm-itk - multiuser MPM for Apache 2.2
 apache2-mpm-prefork - Apache HTTP Server - traditional non-threaded model
 apache2-mpm-worker - Apache HTTP Server - high speed threaded model
 apache2-prefork-dev - Apache development headers - non-threaded MPM
 apache2-suexec - Standard suexec program for Apache 2 mod_suexec
 apache2-suexec-custom - Configurable suexec program for Apache 2 mod_suexec
 apache2-threaded-dev - Apache development headers - threaded MPM
 apache2-utils - utility programs for webservers
 apache2.2-bin - Apache HTTP Server common binary files
 apache2.2-common - Apache HTTP Server common files
Changes: 
 apache2 (2.2.22-4) unstable; urgency=high
 .
   * CVE-2012-0216: Remove "Alias /doc /usr/share/doc" from the default virtual
     hosts' config files.
     If scripting modules like mod_php or mod_rivet are enabled on systems
     where either 1) some frontend server forwards connections to an apache2
     backend server on the localhost address, or 2) the machine running
     apache2 is also used for web browsing, this could allow a remote
     attacker to execute example scripts stored under /usr/share/doc.
     Depending on the installed packages, this could lead to issues like cross
     site scripting, code execution, or leakage of sensitive data.
Checksums-Sha1: 
 cac338dcfc1aadc9fd10da21b30003fa2f304dcc 2220 apache2_2.2.22-4.dsc
 2b60f8c3d628c2138f659bda283e69a1b097042d 209685 apache2_2.2.22-4.debian.tar.gz
 da1282491efaa1e15d7c5810bea6195f48529c27 316746 apache2.2-common_2.2.22-4_i386.deb
 832ad393c7cd740b09a98619fb284b5f0a8056e0 1456580 apache2.2-bin_2.2.22-4_i386.deb
 f6dc64cb1d87d9a827b000a953859cdf86f4fbbc 2184 apache2-mpm-worker_2.2.22-4_i386.deb
 8f62242385439cd697a0793abcb1f63087ef0aba 2286 apache2-mpm-prefork_2.2.22-4_i386.deb
 e0b1540d6044060955a064ae6ce6d1e2898ecdd4 2250 apache2-mpm-event_2.2.22-4_i386.deb
 a9ca69372fbd674c101c2c44ab9ed2de2b62ac10 2276 apache2-mpm-itk_2.2.22-4_i386.deb
 cf041e02299e70e366368ef3e8dceba620a7669b 175310 apache2-utils_2.2.22-4_i386.deb
 445a66586975d687554523b97581daed77b2296e 105770 apache2-suexec_2.2.22-4_i386.deb
 f805cf595802b2baf9d5ae4c346d2c6778725add 107406 apache2-suexec-custom_2.2.22-4_i386.deb
 b18cef1ea87d74c4ed068af436222c337d4f0922 1386 apache2_2.2.22-4_i386.deb
 397c008e4fca976b6b0cd59fdc2ebbce1d704d39 2703936 apache2-doc_2.2.22-4_all.deb
 9ee8f0e44a5c92d8336131b43c61a96cda489102 137936 apache2-prefork-dev_2.2.22-4_i386.deb
 caec3b32633fb647c2734ce746e05e2c236054b5 139110 apache2-threaded-dev_2.2.22-4_i386.deb
 2689cfec1bd4cd565cc4ba610427fcb4ea7ef792 2808944 apache2-dbg_2.2.22-4_i386.deb
Checksums-Sha256: 
 d0645b6fbd93f2cda656c2bee3c145d9a452025eaa493f8c6e210a2bec1b184b 2220 apache2_2.2.22-4.dsc
 44f75f56885ea53d2101e98c7332b26d8be0f8563884977a9e7d3bad46ce01b4 209685 apache2_2.2.22-4.debian.tar.gz
 de9f647236663b85a5a636d942e64030e7e92c24ef3b5a3c3f310d7afbdafa0c 316746 apache2.2-common_2.2.22-4_i386.deb
 06dfeac3a65a7a333c0a0977661be6eec5268c382d415ab4c5a7a27156310c2f 1456580 apache2.2-bin_2.2.22-4_i386.deb
 796063f2e6402d6c702424c1024097f6d2f13eb953ecd1c8d0e0eb91bed759f6 2184 apache2-mpm-worker_2.2.22-4_i386.deb
 18be855c699e598e669862469fd0a37fa0efba4e0f6856dc78c50924dc96fdd8 2286 apache2-mpm-prefork_2.2.22-4_i386.deb
 d33209ff44ddfdbccac08409a59199cd6755f15038755f5446d085bb14c6ce93 2250 apache2-mpm-event_2.2.22-4_i386.deb
 f13e5b22950cb46a5c74cb82f9ba6719a86ba61cfc3cbd991e6f0737ea0392eb 2276 apache2-mpm-itk_2.2.22-4_i386.deb
 ba274b138d734b1902fe9572864e439f83662120363dba5e394bc7c134df6b5b 175310 apache2-utils_2.2.22-4_i386.deb
 638ebc04dbd85dd5970316fe70bd3930b0ce7096e93538d8abebb3fda9a465be 105770 apache2-suexec_2.2.22-4_i386.deb
 8fb0a27390b9ce30a7ac8d27d59aba91adfad3c5cc9a676baadec711f2386c50 107406 apache2-suexec-custom_2.2.22-4_i386.deb
 1b3339c0fbe5b0f9d2f5ef0af4fd161079e31756d1c355707823972446c4527d 1386 apache2_2.2.22-4_i386.deb
 67157f150fff9d52334022db91e40247b7072c06729955e51c73599d01eda4ce 2703936 apache2-doc_2.2.22-4_all.deb
 81da5c56bc5ab02acde639051bedea7a792c727434b25ace401c694df4813656 137936 apache2-prefork-dev_2.2.22-4_i386.deb
 85e26605389dd3588938bed5fac7c4601e4c8119338a1107e15c696a86bad72c 139110 apache2-threaded-dev_2.2.22-4_i386.deb
 2940f5c7d273ff0eaf3942e7e7d0f86d28a26bedbf3abe9c6ebad6312fc056b4 2808944 apache2-dbg_2.2.22-4_i386.deb
Files: 
 be28d9d22534f9b81b0f3cb3cf1c49dc 2220 httpd optional apache2_2.2.22-4.dsc
 dbef06a88faa99255a63252f4d8595d0 209685 httpd optional apache2_2.2.22-4.debian.tar.gz
 17fc67f15adc76e51c2c3f9daa571270 316746 httpd optional apache2.2-common_2.2.22-4_i386.deb
 82134b3cd12c05cdb551229b3100f5e4 1456580 httpd optional apache2.2-bin_2.2.22-4_i386.deb
 e3a7f81975d6fb27874e96a76b25bf0a 2184 httpd optional apache2-mpm-worker_2.2.22-4_i386.deb
 523e333ac4b522f527fdc5200ac98ecb 2286 httpd optional apache2-mpm-prefork_2.2.22-4_i386.deb
 5b86e91599534f0867f2093cdf19a908 2250 httpd optional apache2-mpm-event_2.2.22-4_i386.deb
 f29f57696f16c44c7927c55cde79673c 2276 httpd extra apache2-mpm-itk_2.2.22-4_i386.deb
 3775e9122ea574c03a52e5d0d2020e71 175310 httpd optional apache2-utils_2.2.22-4_i386.deb
 7f45d83368d30e48dbd8970c33cf1e5f 105770 httpd optional apache2-suexec_2.2.22-4_i386.deb
 cc13dfebae6f114de1eb6e02d7f63347 107406 httpd extra apache2-suexec-custom_2.2.22-4_i386.deb
 a0263c16064d2cd26ce6a0699cbc52e1 1386 httpd optional apache2_2.2.22-4_i386.deb
 20ac2a334f1754e1e357f6cd6031a272 2703936 doc optional apache2-doc_2.2.22-4_all.deb
 a03c9f2edbc8cc2f6dd4f08ff7eb854c 137936 httpd extra apache2-prefork-dev_2.2.22-4_i386.deb
 926867939d80f3b86b04202bbbda52fa 139110 httpd extra apache2-threaded-dev_2.2.22-4_i386.deb
 a76da3ca27278f1128524160570e24a3 2808944 debug extra apache2-dbg_2.2.22-4_i386.deb

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.12 (GNU/Linux)

iD8DBQFPi0KGbxelr8HyTqQRAlQXAJ4mYY/wwKQ1ZkEoo9Lfz972l9Eq4QCfTqCs
kyJUmg7ZHV263IPWnN78+1A=
=2tS+
-----END PGP SIGNATURE-----


Accepted:
apache2-dbg_2.2.22-4_i386.deb
  to main/a/apache2/apache2-dbg_2.2.22-4_i386.deb
apache2-doc_2.2.22-4_all.deb
  to main/a/apache2/apache2-doc_2.2.22-4_all.deb
apache2-mpm-event_2.2.22-4_i386.deb
  to main/a/apache2/apache2-mpm-event_2.2.22-4_i386.deb
apache2-mpm-itk_2.2.22-4_i386.deb
  to main/a/apache2/apache2-mpm-itk_2.2.22-4_i386.deb
apache2-mpm-prefork_2.2.22-4_i386.deb
  to main/a/apache2/apache2-mpm-prefork_2.2.22-4_i386.deb
apache2-mpm-worker_2.2.22-4_i386.deb
  to main/a/apache2/apache2-mpm-worker_2.2.22-4_i386.deb
apache2-prefork-dev_2.2.22-4_i386.deb
  to main/a/apache2/apache2-prefork-dev_2.2.22-4_i386.deb
apache2-suexec-custom_2.2.22-4_i386.deb
  to main/a/apache2/apache2-suexec-custom_2.2.22-4_i386.deb
apache2-suexec_2.2.22-4_i386.deb
  to main/a/apache2/apache2-suexec_2.2.22-4_i386.deb
apache2-threaded-dev_2.2.22-4_i386.deb
  to main/a/apache2/apache2-threaded-dev_2.2.22-4_i386.deb
apache2-utils_2.2.22-4_i386.deb
  to main/a/apache2/apache2-utils_2.2.22-4_i386.deb
apache2.2-bin_2.2.22-4_i386.deb
  to main/a/apache2/apache2.2-bin_2.2.22-4_i386.deb
apache2.2-common_2.2.22-4_i386.deb
  to main/a/apache2/apache2.2-common_2.2.22-4_i386.deb
apache2_2.2.22-4.debian.tar.gz
  to main/a/apache2/apache2_2.2.22-4.debian.tar.gz
apache2_2.2.22-4.dsc
  to main/a/apache2/apache2_2.2.22-4.dsc
apache2_2.2.22-4_i386.deb
  to main/a/apache2/apache2_2.2.22-4_i386.deb


Reply to: