Format: 1.8 Date: Fri, 08 Mar 2013 09:52:54 -0500 Source: apache2 Binary: apache2.2-common apache2.2-bin apache2-mpm-worker apache2-mpm-prefork apache2-mpm-event apache2-mpm-itk apache2-utils apache2-suexec apache2-suexec-custom apache2 apache2-doc apache2-prefork-dev apache2-threaded-dev apache2-dbg Architecture: amd64 Version: 2.2.22-1ubuntu1.3 Distribution: precise Urgency: low Maintainer: Ubuntu/amd64 Build Daemon Changed-By: Marc Deslauriers Description: apache2 - Apache HTTP Server metapackage apache2-dbg - Apache debugging symbols apache2-doc - Apache HTTP Server documentation apache2-mpm-event - Apache HTTP Server - event driven model apache2-mpm-itk - multiuser MPM for Apache 2.2 apache2-mpm-prefork - Apache HTTP Server - traditional non-threaded model apache2-mpm-worker - Apache HTTP Server - high speed threaded model apache2-prefork-dev - Apache development headers - non-threaded MPM apache2-suexec - Standard suexec program for Apache 2 mod_suexec apache2-suexec-custom - Configurable suexec program for Apache 2 mod_suexec apache2-threaded-dev - Apache development headers - threaded MPM apache2-utils - utility programs for webservers apache2.2-bin - Apache HTTP Server common binary files apache2.2-common - Apache HTTP Server common files Changes: apache2 (2.2.22-1ubuntu1.3) precise-security; urgency=low . * SECURITY UPDATE: multiple cross-site scripting issues - debian/patches/CVE-2012-3499_4558.patch: properly escape html in modules/generators/{mod_info.c,mod_status.c}, modules/ldap/util_ldap_cache_mgr.c, modules/mappers/mod_imagemap.c, modules/proxy/{mod_proxy_balancer.c,mod_proxy_ftp.c}. - CVE-2012-3499 - CVE-2012-4558 * SECURITY UPDATE: symlink attack in apache2ctl script - debian/apache2ctl: introduce and use a safer mkdir_chown() function. - Thanks to Stefan Fritsch for the fix. - CVE-2013-1048 Checksums-Sha1: 0dae58aeae67421805e2b1fb74e7a036ea9c9885 227192 apache2.2-common_2.2.22-1ubuntu1.3_amd64.deb 5adce42251e13831a4502357b0051c157ecc82fc 1338334 apache2.2-bin_2.2.22-1ubuntu1.3_amd64.deb 8835bc4e3a64c0c93bc3ab11c7de7cfb92397357 2296 apache2-mpm-worker_2.2.22-1ubuntu1.3_amd64.deb 2e5dad7d03eba9ff691e4dd2283fc9bb25ce6039 2404 apache2-mpm-prefork_2.2.22-1ubuntu1.3_amd64.deb 0987b40b1b69714b0f042772ce8a07f3483e7cc7 2366 apache2-mpm-event_2.2.22-1ubuntu1.3_amd64.deb 6687e5a2e0a90b1d77e113aef0b6e687b9a3fe8c 2386 apache2-mpm-itk_2.2.22-1ubuntu1.3_amd64.deb e2ea493a91ed2634312830c7a5fff550bb27f3d1 90406 apache2-utils_2.2.22-1ubuntu1.3_amd64.deb cbcd115157481614507adbebebcdd879c9b87813 15438 apache2-suexec_2.2.22-1ubuntu1.3_amd64.deb 90cad43f5347ecccfb904e47edecab049edcd198 17252 apache2-suexec-custom_2.2.22-1ubuntu1.3_amd64.deb e0d8f71c5fec30e3f99a6a309fe6ed018a158785 1492 apache2_2.2.22-1ubuntu1.3_amd64.deb e935f12b39c0821cb1934b57ce89c46ff867dc72 138082 apache2-prefork-dev_2.2.22-1ubuntu1.3_amd64.deb caafde801d22e5db7f2a229d2cac806d3866d521 139194 apache2-threaded-dev_2.2.22-1ubuntu1.3_amd64.deb Checksums-Sha256: 96bf4f56d5ec54c8f555f9609ebc9b34ffe9e25f5afb45029ad5e71d795b07e0 227192 apache2.2-common_2.2.22-1ubuntu1.3_amd64.deb ebb7ce675cfb9421cd5b5846d291e05e1f85b5786bf328f89d213ac8e5c872a2 1338334 apache2.2-bin_2.2.22-1ubuntu1.3_amd64.deb f22414f065f145e87cb5750a8a03ec70a19de6888d04dad5114397713e4b43ed 2296 apache2-mpm-worker_2.2.22-1ubuntu1.3_amd64.deb b3efa5c1acf7c7f246b932551521197bad262e78c4843813e5f8ec9bc13803bc 2404 apache2-mpm-prefork_2.2.22-1ubuntu1.3_amd64.deb cf5d3db85839543185f768b3f54737fe81223072d32e7a3f071704bd35f184e5 2366 apache2-mpm-event_2.2.22-1ubuntu1.3_amd64.deb 68e0d634f90da0f76447132df0ba98012eae08824044c84e3ba5a71253b86a87 2386 apache2-mpm-itk_2.2.22-1ubuntu1.3_amd64.deb 55511e8b81b75acb928029a996089a117e8b0e66bdcd5ace9dcd64723aa1b32d 90406 apache2-utils_2.2.22-1ubuntu1.3_amd64.deb b8d05c831ac012e62bead7301857181ce4e5559fa02b63a937a20448a1ec97ea 15438 apache2-suexec_2.2.22-1ubuntu1.3_amd64.deb 70af784f1cf0e99f41f1ff15c4c4f1c4652e938beaa1db042620b61d1470a0a2 17252 apache2-suexec-custom_2.2.22-1ubuntu1.3_amd64.deb a4a3891629acb9e3d646566b705cac614192b47aade9122dfffeb457a739c5de 1492 apache2_2.2.22-1ubuntu1.3_amd64.deb d0eb590c0d619b3770689a0fd553d387865062f71a6d21c88ef75009703aeae9 138082 apache2-prefork-dev_2.2.22-1ubuntu1.3_amd64.deb e37534b00cb352d6e1e29a48230535fa7b17290b261c998f14eef2f1b61daba4 139194 apache2-threaded-dev_2.2.22-1ubuntu1.3_amd64.deb Files: 9fbc7691fd93cf82bceec06452989418 227192 httpd optional apache2.2-common_2.2.22-1ubuntu1.3_amd64.deb ea0cda9801c3f8e7f279199e70348b1c 1338334 httpd optional apache2.2-bin_2.2.22-1ubuntu1.3_amd64.deb 89407ba42ff399e69aa2b36c28ccc346 2296 httpd optional apache2-mpm-worker_2.2.22-1ubuntu1.3_amd64.deb f9c5fc4cd93a859d1a07753f671b4379 2404 httpd optional apache2-mpm-prefork_2.2.22-1ubuntu1.3_amd64.deb 2893c7950a891732c9c479ef39642bac 2366 httpd optional apache2-mpm-event_2.2.22-1ubuntu1.3_amd64.deb 84c0ef05c8f4b133b56267cc1d5b2070 2386 httpd extra apache2-mpm-itk_2.2.22-1ubuntu1.3_amd64.deb 890a7a540bdd35e4ce7d79c27ab61be8 90406 httpd optional apache2-utils_2.2.22-1ubuntu1.3_amd64.deb 90c9c30f617e00835550bbcee720d087 15438 httpd optional apache2-suexec_2.2.22-1ubuntu1.3_amd64.deb f57d64678e913f64ed4ca86006613d5e 17252 httpd extra apache2-suexec-custom_2.2.22-1ubuntu1.3_amd64.deb b7beac61a10eff02073449491b92562a 1492 httpd optional apache2_2.2.22-1ubuntu1.3_amd64.deb bd5beb9dd44eb538252fb6f35d610a6e 138082 httpd extra apache2-prefork-dev_2.2.22-1ubuntu1.3_amd64.deb 812c9cb6cdda34965923524c0a2fc80f 139194 httpd extra apache2-threaded-dev_2.2.22-1ubuntu1.3_amd64.deb Original-Maintainer: Debian Apache Maintainers Original-Vcs-Browser: http://anonscm.debian.org/gitweb/?p=pkg-apache/apache2.git Original-Vcs-Git: git://git.debian.org/git/pkg-apache/apache2.git