Ubuntu

“apache2” 2.2.8-1ubuntu0.24 source package in The Hardy Heron

Publishing history

2.2.8-1ubuntu0.24
SUPERSEDED: Hardy pocket Updates in component main and section web
  • Removed from disk on 2013-03-19.
  • Removal requested on 2013-03-19.
  • Superseded on 2013-03-18 by apache2 - 2.2.8-1ubuntu0.25
  • Published on 2012-11-08
  • Copied from ubuntu hardy in Private PPA for Ubuntu Security Team by Ubuntu Archive Robot
2.2.8-1ubuntu0.24
SUPERSEDED: Hardy pocket Security in component main and section web
  • Removed from disk on 2013-03-19.
  • Removal requested on 2013-03-19.
  • Superseded on 2013-03-18 by apache2 - 2.2.8-1ubuntu0.25
  • Published on 2012-11-08
  • Copied from ubuntu hardy in Private PPA for Ubuntu Security Team by Marc Deslauriers

Builds

Changelog

apache2 (2.2.8-1ubuntu0.24) hardy-security; urgency=low

  * SECURITY UPDATE: XSS vulnerability in mod_negotiation
    - debian/patches/224_CVE-2012-2687.dpatch: escape filenames in
      modules/mappers/mod_negotiation.c.
    - CVE-2012-2687
  * SECURITY UPDATE: CRIME attack ssl attack (LP: #1068854)
    - debian/patches/225_CVE-2012-4929.dpatch: backport SSLCompression
      on|off directive. Defaults to off as enabling compression enables the
      CRIME attack.
    - CVE-2012-4929
 -- Marc Deslauriers <email address hidden>   Tue, 06 Nov 2012 15:01:07 -0500