Format: 1.7 Date: Thu, 01 Sep 2011 01:53:46 -0700 Source: apache2 Binary: apache2.2-common apache2-mpm-worker apache2-mpm-prefork apache2-mpm-event apache2-mpm-perchild apache2-utils apache2 apache2-doc apache2-prefork-dev apache2-threaded-dev apache2-src apache2-dbg Architecture: lpia Version: 2.2.8-1ubuntu0.21 Distribution: hardy Urgency: low Maintainer: Ubuntu/i386 Build Daemon Changed-By: Steve Beattie Description: apache2 - Next generation, scalable, extendable web server apache2-dbg - Apache debugging symbols apache2-doc - documentation for apache2 apache2-mpm-event - Event driven model for Apache HTTPD apache2-mpm-perchild - Transitional package - please remove apache2-mpm-prefork - Traditional model for Apache HTTPD apache2-mpm-worker - High speed threaded model for Apache HTTPD apache2-prefork-dev - development headers for apache2 apache2-src - Apache source code apache2-threaded-dev - development headers for apache2 apache2-utils - utility programs for webservers apache2.2-common - Next generation, scalable, extendable web server Changes: apache2 (2.2.8-1ubuntu0.21) hardy-security; urgency=low . * SECURITY UPDATE: Range header DoS vulnerability * debian/patches/214_CVE-2011-3192.dpatch: filter out large byte ranges and improve memory efficiency in handling buckets. (thanks to Debian and upstream) * CVE-2011-3192 * Include fix for regressions introduced by above patch: - debian/patches/084_CVE-2011-3192_regression.dpatch: return 206 and 416 response codes where appropriate (see deban bug 639825) Files: beb8c75d535bc2ef76f05966c3064df2 751002 web optional apache2.2-common_2.2.8-1ubuntu0.21_lpia.deb 2560fe41417cdbd4a437857cb31dac8c 236890 web optional apache2-mpm-worker_2.2.8-1ubuntu0.21_lpia.deb 50fd4699a555ec9340eb63725d209cd6 233238 web optional apache2-mpm-prefork_2.2.8-1ubuntu0.21_lpia.deb c57931758c86e772a1beb5f751f9a661 237734 web optional apache2-mpm-event_2.2.8-1ubuntu0.21_lpia.deb fb8512a4faacb0f60c56d58890c4c6e6 142058 web optional apache2-utils_2.2.8-1ubuntu0.21_lpia.deb 016b322862ebfe56b6ae4163044ef680 206432 devel extra apache2-prefork-dev_2.2.8-1ubuntu0.21_lpia.deb ff74ea4e1f1a5cf9a7954a0c261358a8 207204 devel extra apache2-threaded-dev_2.2.8-1ubuntu0.21_lpia.deb Original-Maintainer: Debian Apache Maintainers