Format: 1.8 Date: Fri, 08 Mar 2013 09:31:43 -0500 Source: apache2 Binary: apache2.2-common apache2.2-bin apache2-mpm-worker apache2-mpm-prefork apache2-mpm-event apache2-mpm-itk apache2-utils apache2-suexec apache2-suexec-custom apache2 apache2-doc apache2-prefork-dev apache2-threaded-dev apache2-dbg Architecture: amd64 Version: 2.2.22-6ubuntu2.2 Distribution: quantal Urgency: low Maintainer: Ubuntu/amd64 Build Daemon Changed-By: Marc Deslauriers Description: apache2 - Apache HTTP Server metapackage apache2-dbg - Apache debugging symbols apache2-doc - Apache HTTP Server documentation apache2-mpm-event - Apache HTTP Server - event driven model apache2-mpm-itk - multiuser MPM for Apache 2.2 apache2-mpm-prefork - Apache HTTP Server - traditional non-threaded model apache2-mpm-worker - Apache HTTP Server - high speed threaded model apache2-prefork-dev - Apache development headers - non-threaded MPM apache2-suexec - Standard suexec program for Apache 2 mod_suexec apache2-suexec-custom - Configurable suexec program for Apache 2 mod_suexec apache2-threaded-dev - Apache development headers - threaded MPM apache2-utils - utility programs for webservers apache2.2-bin - Apache HTTP Server common binary files apache2.2-common - Apache HTTP Server common files Changes: apache2 (2.2.22-6ubuntu2.2) quantal-security; urgency=low . * SECURITY UPDATE: multiple cross-site scripting issues - debian/patches/CVE-2012-3499_4558.patch: properly escape html in modules/generators/{mod_info.c,mod_status.c}, modules/ldap/util_ldap_cache_mgr.c, modules/mappers/mod_imagemap.c, modules/proxy/{mod_proxy_balancer.c,mod_proxy_ftp.c}. - CVE-2012-3499 - CVE-2012-4558 * SECURITY UPDATE: symlink attack in apache2ctl script - debian/apache2ctl: introduce and use a safer mkdir_chown() function. - Thanks to Stefan Fritsch for the fix. - CVE-2013-1048 Checksums-Sha1: 2404301d9ddcce5a0c7203e5dfbf6d93e06bdd7e 226620 apache2.2-common_2.2.22-6ubuntu2.2_amd64.deb 4a4ba155d223ad0b64f53e1751c91f8f9ecb5669 3120864 apache2.2-bin_2.2.22-6ubuntu2.2_amd64.deb e51d8767bcbba054d0489b0a0229692f4381bcee 2238 apache2-mpm-worker_2.2.22-6ubuntu2.2_amd64.deb b30bd1493b5f023a2bc59b96719d12c58a5bdfda 2352 apache2-mpm-prefork_2.2.22-6ubuntu2.2_amd64.deb 0e4ceb216bfc5894c6ccb23ce855de5e92434349 2306 apache2-mpm-event_2.2.22-6ubuntu2.2_amd64.deb a3eb192b7bdde33217dbc6ff48a4a96afc62e65a 2332 apache2-mpm-itk_2.2.22-6ubuntu2.2_amd64.deb 6af11621b898a83fdb54aef59edcb07c0f01911e 91586 apache2-utils_2.2.22-6ubuntu2.2_amd64.deb 602259d156447157603f37c9eb07e88524ab3c48 15432 apache2-suexec_2.2.22-6ubuntu2.2_amd64.deb 792e3c7786a9f17bd338912456741c9b8b9736a7 17172 apache2-suexec-custom_2.2.22-6ubuntu2.2_amd64.deb 0dbe489a030f114dd0d8737f736e48f07d8f9d32 1440 apache2_2.2.22-6ubuntu2.2_amd64.deb 1559e998b5b1d4ee90198db2e19d016604b23335 138340 apache2-prefork-dev_2.2.22-6ubuntu2.2_amd64.deb c857493a99b5dbadd318b2afdf4bf18b9f775e17 139484 apache2-threaded-dev_2.2.22-6ubuntu2.2_amd64.deb Checksums-Sha256: 022ce79773c10d7b15bc84480e8c64418429acc914ed89d94ba6f14f350b3a1d 226620 apache2.2-common_2.2.22-6ubuntu2.2_amd64.deb acfed51cd1abb0ccd1f10e9faf8261568988fff90d1ac66bfdf78ad0353fe24b 3120864 apache2.2-bin_2.2.22-6ubuntu2.2_amd64.deb 75a8ed4b10e5f12edfa876204a356b3f99d2012fbf7f828b16435761b0243c7d 2238 apache2-mpm-worker_2.2.22-6ubuntu2.2_amd64.deb 0b31069c428aad0b7bd6dd875f5f53aba90a3cf8a411fa3a751f5eb989ddb0bf 2352 apache2-mpm-prefork_2.2.22-6ubuntu2.2_amd64.deb 93e517176df95401c678c4eaee72009fd4a4600a1e60d27653a19a9e569d752e 2306 apache2-mpm-event_2.2.22-6ubuntu2.2_amd64.deb af25888f8a2686cecfa554d6815a32bf9e26d5b6df97950d903d9189d4c61816 2332 apache2-mpm-itk_2.2.22-6ubuntu2.2_amd64.deb 0576755bf050410ec0c26c052d5eeb4c922737c8eb338205323d184d374ea12f 91586 apache2-utils_2.2.22-6ubuntu2.2_amd64.deb 9a2c2e6f61da309a3525c43f84a542379ea706fdc4d5ec02b1824bb6a9e903bc 15432 apache2-suexec_2.2.22-6ubuntu2.2_amd64.deb 2783ff9c6ce44ca67936a36c2f3ed85c44f5bb9dd1a69db25a642c23dcdd84b3 17172 apache2-suexec-custom_2.2.22-6ubuntu2.2_amd64.deb 8d35ca75175fb98e85fea8ca4aa1e7122675811fdafb02b1d2566da8bcf2ded4 1440 apache2_2.2.22-6ubuntu2.2_amd64.deb e0edd27b0ab80f939add57856b5b2c7aae410f669d5518aece175be7c634efb6 138340 apache2-prefork-dev_2.2.22-6ubuntu2.2_amd64.deb bd3569f31f8be0041b62a6cb352994ec37d62675151baca5a0878ed8fe64701e 139484 apache2-threaded-dev_2.2.22-6ubuntu2.2_amd64.deb Files: e008308e06587ba56fbd42ef6e2c56ab 226620 httpd optional apache2.2-common_2.2.22-6ubuntu2.2_amd64.deb e91f1a7b60fab97c0217ff747864f58c 3120864 httpd optional apache2.2-bin_2.2.22-6ubuntu2.2_amd64.deb 68e2b4982701a0550e7cf9a152517096 2238 httpd optional apache2-mpm-worker_2.2.22-6ubuntu2.2_amd64.deb 5e0277cf3efe7abb1cc875de8cb0f489 2352 httpd optional apache2-mpm-prefork_2.2.22-6ubuntu2.2_amd64.deb 717b9f1b15d4480e04d27a97de3c16ea 2306 httpd optional apache2-mpm-event_2.2.22-6ubuntu2.2_amd64.deb a5904d46787282dd1005b2fbe7ab1351 2332 httpd extra apache2-mpm-itk_2.2.22-6ubuntu2.2_amd64.deb 377255373bf2d157915a4a01442e6f65 91586 httpd optional apache2-utils_2.2.22-6ubuntu2.2_amd64.deb 4864fd14a6e55e98d20ca44e15d422ce 15432 httpd optional apache2-suexec_2.2.22-6ubuntu2.2_amd64.deb 31162afa4165e55c6f2ab13525b225ec 17172 httpd extra apache2-suexec-custom_2.2.22-6ubuntu2.2_amd64.deb 0a875d6724cd693635cf27b3e6e1b67e 1440 httpd optional apache2_2.2.22-6ubuntu2.2_amd64.deb fa3a521d5b210708f6e97a4204d3b126 138340 httpd extra apache2-prefork-dev_2.2.22-6ubuntu2.2_amd64.deb c491e32394546c1055709581bc0f72d0 139484 httpd extra apache2-threaded-dev_2.2.22-6ubuntu2.2_amd64.deb Original-Maintainer: Debian Apache Maintainers