apache2 2.4.10-1ubuntu1 source package in Ubuntu

Changelog

apache2 (2.4.10-1ubuntu1) utopic; urgency=medium

  * Merge from Debian unstable. Remaining changes:
    - debian/{control, apache2.install, apache2-utils.ufw.profile,
      apache2.dirs}: Add ufw profiles.
    - debian/apache2.py, debian/apache2-bin.install: Add apport hook.
    - d/control, d/config-dir/mods-available/ssl.conf, d/ask-for-passphrase,
      d/apache2.install: Plymouth aware passphrase dialog program
      ask-for-passphrase.
    - Add dep8 tests.
    - debian/rules: Fix cross-building by passing DEB_{HOST,BUILD}_GNU_TYPE to
      configure.
    - debian/patches/086_svn_cross_compiles: Backport several cross fixes from
      upstream
    - d/index.html: replace Debian with Ubuntu on default page.
    - d/p/split-logfile.patch: fix completely broken split-logfile command.

apache2 (2.4.10-1) unstable; urgency=medium

  [ Arno Töll ]
  * New upstream version
    + Refresh debian/patches/fhs_compliance.patch
    + Security Fixes:
      - CVE-2014-0117 mod_proxy: Fix DoS that could cause a crash
      - CVE-2014-0226 Fix a race condition resulting in a heap overflow in
        scoreboard handling
      - CVE-2014-0118 mod_deflate: The DEFLATE input filter now limits the
        length and compression ratio of inflated request to mitigate a
        possible DoS
      - CVE-2014-0231 mod_cgid: Fix a denial of service against CGI scripts
    + Fixes SNI with certificate defined in global scope. (Closes: #751361)
  * Warn users if they try to disable modules that we consider essential for
    operation of the Apache web server (Closes: #709461)
  * Drop libcap from our build-dependencies. That was needed for itk which we
    gave source out to it's own package again.
  * Provide apache2.2-common package to avoid upgrading problems for people
    using --purge (apt) or --purge-unused (aptitude) even though that's
    clearly discouraged. This caused disappearing of conffiles because we move
    them from apache2.2-common to apache2 during the upgrade. Ugh. This was
    not a bug in our packaging, but an unfortunately people blame us
    nonetheless even though it's not all our fault. This alternative helps
    those people, but at the same time means that incompatible modules aren't
    force-removed by dpkg during the upgrade. Hopefully we catch all of them
    with the Breaks relation coming along (Closes: #716880, #752922, #711925)

apache2 (2.4.9-2) unstable; urgency=medium

  * Fix logic in postinst to detect existing index.* files in both
    DocumentRoots, the old /var/www and the new /var/www/html. Also
    change the compiled in default DocumentRoot to /var/www/html.
    Closes: #743915
  * Fix buffer overflows in suexec with very long (unix) usernames. Not
    exploitable due to FORTIFY_SOURCE. And creating users usually requires
    root privileges, anyway. Thanks to Luca Bruno for the report.
  * Remove conflicts of mpm modules with mpm_itk, which isn't an mpm
    anymore. Fixes a part of: #734865. libapache2-mpm-itk needs a fix, too.
  * Remove obsolete warning in a2enmod about mpm-itk.
  * Fix lintian warning: Remove image ref to w3.org, which is a privacy
    breach.
 -- Robie Basak <email address hidden>   Thu, 24 Jul 2014 15:13:16 +0000

Upload details

Uploaded by:
Robie Basak
Uploaded to:
Utopic
Original maintainer:
Ubuntu Developers
Architectures:
any all
Section:
web
Urgency:
Medium Urgency

See full publishing history Publishing

Series Pocket Published Component Section

Downloads

File Size SHA-256 Checksum
apache2_2.4.10.orig.tar.bz2 4.8 MiB 176c4dac1a745f07b7b91e7f4fd48f9c48049fa6f088efe758d61d9738669c6a
apache2_2.4.10-1ubuntu1.debian.tar.gz 488.1 KiB 6c7ef78cfb03b8deeeea2fc649476bbd2d0d5d398ea0cc7f1aaea231ac4dfa02
apache2_2.4.10-1ubuntu1.dsc 3.1 KiB f18ca485c84567ef06680deba5568cfeed0e904433e9cef571fab37c0da21e39

Available diffs

View changes file

Binary packages built by this source

apache2: No summary available for apache2 in ubuntu vivid.

No description available for apache2 in ubuntu vivid.

apache2-bin: No summary available for apache2-bin in ubuntu vivid.

No description available for apache2-bin in ubuntu vivid.

apache2-data: No summary available for apache2-data in ubuntu utopic.

No description available for apache2-data in ubuntu utopic.

apache2-dbg: No summary available for apache2-dbg in ubuntu utopic.

No description available for apache2-dbg in ubuntu utopic.

apache2-dev: No summary available for apache2-dev in ubuntu utopic.

No description available for apache2-dev in ubuntu utopic.

apache2-doc: No summary available for apache2-doc in ubuntu utopic.

No description available for apache2-doc in ubuntu utopic.

apache2-mpm-event: No summary available for apache2-mpm-event in ubuntu utopic.

No description available for apache2-mpm-event in ubuntu utopic.

apache2-mpm-itk: No summary available for apache2-mpm-itk in ubuntu utopic.

No description available for apache2-mpm-itk in ubuntu utopic.

apache2-mpm-prefork: No summary available for apache2-mpm-prefork in ubuntu utopic.

No description available for apache2-mpm-prefork in ubuntu utopic.

apache2-mpm-worker: No summary available for apache2-mpm-worker in ubuntu utopic.

No description available for apache2-mpm-worker in ubuntu utopic.

apache2-suexec: No summary available for apache2-suexec in ubuntu utopic.

No description available for apache2-suexec in ubuntu utopic.

apache2-suexec-custom: No summary available for apache2-suexec-custom in ubuntu utopic.

No description available for apache2-suexec-custom in ubuntu utopic.

apache2-suexec-pristine: No summary available for apache2-suexec-pristine in ubuntu vivid.

No description available for apache2-suexec-pristine in ubuntu vivid.

apache2-utils: No summary available for apache2-utils in ubuntu vivid.

No description available for apache2-utils in ubuntu vivid.

apache2.2-bin: No summary available for apache2.2-bin in ubuntu utopic.

No description available for apache2.2-bin in ubuntu utopic.

apache2.2-common: No summary available for apache2.2-common in ubuntu utopic.

No description available for apache2.2-common in ubuntu utopic.

libapache2-mod-macro: No summary available for libapache2-mod-macro in ubuntu vivid.

No description available for libapache2-mod-macro in ubuntu vivid.

libapache2-mod-proxy-html: No summary available for libapache2-mod-proxy-html in ubuntu vivid.

No description available for libapache2-mod-proxy-html in ubuntu vivid.