Format: 1.8 Date: Mon, 26 Jun 2017 07:50:10 -0400 Source: apache2 Binary: apache2 apache2-data apache2-bin apache2-utils apache2-suexec-pristine apache2-suexec-custom apache2-doc apache2-dev apache2-ssl-dev apache2-dbg Architecture: ppc64el Version: 2.4.25-3ubuntu2.1 Distribution: zesty Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: Marc Deslauriers Description: apache2 - Apache HTTP Server apache2-bin - Apache HTTP Server (modules and other binary files) apache2-data - Apache HTTP Server (common files) apache2-dbg - Apache debugging symbols apache2-dev - Apache HTTP Server (development headers) apache2-doc - Apache HTTP Server (on-site documentation) apache2-ssl-dev - Apache HTTP Server (mod_ssl development headers) apache2-suexec-custom - Apache HTTP Server configurable suexec program for mod_suexec apache2-suexec-pristine - Apache HTTP Server standard suexec program for mod_suexec apache2-utils - Apache HTTP Server (utility programs for web servers) Changes: apache2 (2.4.25-3ubuntu2.1) zesty-security; urgency=medium . * SECURITY UPDATE: authentication bypass in ap_get_basic_auth_pw() - debian/patches/CVE-2017-3167.patch: deprecate and replace ap_get_basic_auth_pw in include/ap_mmn.h, include/http_protocol.h, server/protocol.c, server/request.c. - CVE-2017-3167 * SECURITY UPDATE: NULL pointer deref in ap_hook_process_connection() - debian/patches/CVE-2017-3169.patch: fix ctx passed to ssl_io_filter_error() in modules/ssl/ssl_engine_io.c. - CVE-2017-3169 * SECURITY UPDATE: denial of service and possible incorrect value return in HTTP strict parsing changes - debian/patches/CVE-2017-7668.patch: short-circuit on NULL in server/util.c. - CVE-2017-7668 * SECURITY UPDATE: mod_mime DoS via crafted Content-Type response header - debian/patches/CVE-2017-7679.patch: fix quoted pair scanning in modules/http/mod_mime.c. - CVE-2017-7679 Checksums-Sha1: bdf7eab0a869d0f4d566bafb08d625ff0c724ecc 996 apache2-bin-dbgsym_2.4.25-3ubuntu2.1_ppc64el.ddeb 31dc80d2a95aa458567e76f5fa68ccfe14a39afe 901162 apache2-bin_2.4.25-3ubuntu2.1_ppc64el.deb 190aefb840a4e912f01e333205e68d6d34ce49a6 3926398 apache2-dbg_2.4.25-3ubuntu2.1_ppc64el.deb 57e0e4789afd2683990532e4eb98e8478b091731 980 apache2-dbgsym_2.4.25-3ubuntu2.1_ppc64el.ddeb 4868d20e7b7b340c9913bd1cc061bd2432663921 1116 apache2-dev-dbgsym_2.4.25-3ubuntu2.1_ppc64el.ddeb 7b01f025a35f732f629f1ea0c8738d38fd8b8b92 176640 apache2-dev_2.4.25-3ubuntu2.1_ppc64el.deb 7f2bedad19f94541abc00924f11b34a53d49b9e9 990 apache2-ssl-dev-dbgsym_2.4.25-3ubuntu2.1_ppc64el.ddeb ee700859aa7bb19626af6ed68b822d52e730e694 2302 apache2-ssl-dev_2.4.25-3ubuntu2.1_ppc64el.deb 8ad34265fb545b562801c76a27f564f75226188a 982 apache2-suexec-custom-dbgsym_2.4.25-3ubuntu2.1_ppc64el.ddeb 7338b8a8eea6e08e61c0e2c613a50d22ca1eabd5 15126 apache2-suexec-custom_2.4.25-3ubuntu2.1_ppc64el.deb 2d052bd76aa24063b61f4a3ebfdf0d5a584e6cac 924 apache2-suexec-pristine-dbgsym_2.4.25-3ubuntu2.1_ppc64el.ddeb 90ab3388d6e2cec033a9e1b2f8d474c2d1c3a839 13610 apache2-suexec-pristine_2.4.25-3ubuntu2.1_ppc64el.deb 95de73738c2b0cf4f493fdf181bf3c4962df576f 1198 apache2-utils-dbgsym_2.4.25-3ubuntu2.1_ppc64el.ddeb dd97f3996cd297006428c082ba2a6aef9ad28628 81540 apache2-utils_2.4.25-3ubuntu2.1_ppc64el.deb c559359f7f945fcf66f487823edb6a0244c66b99 95854 apache2_2.4.25-3ubuntu2.1_ppc64el.deb Checksums-Sha256: 5d867c2e41d77280c58aecb4388e5106b690ed0bc8b217cb8afeb14004c164b0 996 apache2-bin-dbgsym_2.4.25-3ubuntu2.1_ppc64el.ddeb 3663f2571bf803a9ce71fc96dbca30024a02898e1a4c1158fded63e5f935c11a 901162 apache2-bin_2.4.25-3ubuntu2.1_ppc64el.deb c3d95d4bedab539b8e7ff5b1bf587b4e97460cb8312d0f2d3baef47bfd3df032 3926398 apache2-dbg_2.4.25-3ubuntu2.1_ppc64el.deb 842ba2edfb806ecbe49d2fe74d67de43d035fb6cc21f9db5e1f7e550bdb6328f 980 apache2-dbgsym_2.4.25-3ubuntu2.1_ppc64el.ddeb 6447597dd572cba40fe650219affee8b247f357e96c916b0e95b1b8b81db84c2 1116 apache2-dev-dbgsym_2.4.25-3ubuntu2.1_ppc64el.ddeb 60d8cd993b579b4411aa77543e7a950e7d84806b1f6f526ac5dea6dafe9e875f 176640 apache2-dev_2.4.25-3ubuntu2.1_ppc64el.deb 29b32a839352b86328e45050cb8eb22c48657124995b1d77e1a0dcad504b915d 990 apache2-ssl-dev-dbgsym_2.4.25-3ubuntu2.1_ppc64el.ddeb f4c95756692b6388e720d3c4a6ca0472262ae6873379ad95d6dc1b5e83285a67 2302 apache2-ssl-dev_2.4.25-3ubuntu2.1_ppc64el.deb 310d87194c042bf47a8579d599e532064244278cc0d134a69593683ee7edeeb5 982 apache2-suexec-custom-dbgsym_2.4.25-3ubuntu2.1_ppc64el.ddeb 48be450d9c8153d0881a353764dc715a6f63b1e55f139f2b446dcbcbbe7f7dc8 15126 apache2-suexec-custom_2.4.25-3ubuntu2.1_ppc64el.deb 26beaec849108c707bcfc37e27c86e03932aa0e0d9608b74a2a3949cc9dabf54 924 apache2-suexec-pristine-dbgsym_2.4.25-3ubuntu2.1_ppc64el.ddeb e3c442cb3c85dc5e3879f3571011c7192a2f3a0764cfe39000b5b50741043836 13610 apache2-suexec-pristine_2.4.25-3ubuntu2.1_ppc64el.deb 1ce57a82417340c8cf5f5dabf93c24fb9cbad2d3edfb617e76c1691ecf9a3037 1198 apache2-utils-dbgsym_2.4.25-3ubuntu2.1_ppc64el.ddeb 92b124d63964439b441e489b8cceadb0dd9fd17a165a30b600b140c8bdff43e4 81540 apache2-utils_2.4.25-3ubuntu2.1_ppc64el.deb eed534a87ec29f1b5062cd08d897a06cdf2f04879ccde9aae57e54493b2793e4 95854 apache2_2.4.25-3ubuntu2.1_ppc64el.deb Files: 9df3f3ac2fa1726eb6e0c59c9f8ecf35 996 httpd extra apache2-bin-dbgsym_2.4.25-3ubuntu2.1_ppc64el.ddeb 33aa5223aa87267eacbc415fcfda11d2 901162 httpd optional apache2-bin_2.4.25-3ubuntu2.1_ppc64el.deb 9ab74a138476b8a55b976b6bb697bdd0 3926398 debug extra apache2-dbg_2.4.25-3ubuntu2.1_ppc64el.deb ad52d5788bd92ae2b80c4e54e03b466e 980 httpd extra apache2-dbgsym_2.4.25-3ubuntu2.1_ppc64el.ddeb 9142a327f0fbf0ce8a7e8cc5a798a492 1116 httpd extra apache2-dev-dbgsym_2.4.25-3ubuntu2.1_ppc64el.ddeb 8c7e4237c23ffaf3f1ad3390f7e334b4 176640 httpd optional apache2-dev_2.4.25-3ubuntu2.1_ppc64el.deb c34d950d807c4921dc71d00e0746896e 990 httpd extra apache2-ssl-dev-dbgsym_2.4.25-3ubuntu2.1_ppc64el.ddeb ce14862776759848d2ed4ab7a9501389 2302 httpd optional apache2-ssl-dev_2.4.25-3ubuntu2.1_ppc64el.deb 65951f5f41ef1755611d936031483f1e 982 httpd extra apache2-suexec-custom-dbgsym_2.4.25-3ubuntu2.1_ppc64el.ddeb f8fde3a2385d72b596b879b9f897bbb2 15126 httpd extra apache2-suexec-custom_2.4.25-3ubuntu2.1_ppc64el.deb 74644b132d48e4db5ed09e059c076e57 924 httpd extra apache2-suexec-pristine-dbgsym_2.4.25-3ubuntu2.1_ppc64el.ddeb 0acdd4c88846b5fb0943150f57f0dd17 13610 httpd optional apache2-suexec-pristine_2.4.25-3ubuntu2.1_ppc64el.deb 3b5fafc20c2072ce98d9ad42a39a63a8 1198 httpd extra apache2-utils-dbgsym_2.4.25-3ubuntu2.1_ppc64el.ddeb 980a43deedafe54fbc32ebddef1327c3 81540 httpd optional apache2-utils_2.4.25-3ubuntu2.1_ppc64el.deb 381f065c502a0b7924820ae67b4e2c39 95854 httpd optional apache2_2.4.25-3ubuntu2.1_ppc64el.deb Original-Maintainer: Debian Apache Maintainers