Format: 1.8 Date: Mon, 21 Jul 2014 15:46:10 -0400 Source: apache2 Binary: apache2 apache2-data apache2-bin apache2-mpm-worker apache2-mpm-prefork apache2-mpm-event apache2-mpm-itk apache2.2-bin libapache2-mod-proxy-html libapache2-mod-macro apache2-utils apache2-suexec apache2-suexec-pristine apache2-suexec-custom apache2-doc apache2-dev apache2-dbg Architecture: amd64 Version: 2.4.7-1ubuntu4.1 Distribution: trusty Urgency: medium Maintainer: Ubuntu/amd64 Build Daemon Changed-By: Marc Deslauriers Description: apache2 - Apache HTTP Server apache2-bin - Apache HTTP Server (binary files and modules) apache2-data - Apache HTTP Server (common files) apache2-dbg - Apache debugging symbols apache2-dev - Apache HTTP Server (development headers) apache2-doc - Apache HTTP Server (on-site documentation) apache2-mpm-event - transitional event MPM package for apache2 apache2-mpm-itk - transitional itk MPM package for apache2 apache2-mpm-prefork - transitional prefork MPM package for apache2 apache2-mpm-worker - transitional worker MPM package for apache2 apache2-suexec - transitional package for apache2-suexec-pristine apache2-suexec-custom - Apache HTTP Server configurable suexec program for mod_suexec apache2-suexec-pristine - Apache HTTP Server standard suexec program for mod_suexec apache2-utils - Apache HTTP Server (utility programs for web servers) apache2.2-bin - Transitional package for apache2-bin libapache2-mod-macro - Transitional package for apache2-bin libapache2-mod-proxy-html - Transitional package for apache2-bin Changes: apache2 (2.4.7-1ubuntu4.1) trusty-security; urgency=medium . * SECURITY UPDATE: denial of service in mod_proxy - debian/patches/CVE-2014-0117.patch: also skip over semicolons in modules/proxy/proxy_util.c. - CVE-2014-0117 * SECURITY UPDATE: resource consumption via mod_deflate body decompression - debian/patches/CVE-2014-0118.patch: added new configuration options DeflateInflateLimitRequestBody, DeflateInflateRatioLimit, and DeflateInflateRatioBurst in modules/filters/mod_deflate.c. - CVE-2014-0118 * SECURITY UPDATE: denial of service via race in mod_status - debian/patches/CVE-2014-0226.patch: fix race by adding ap_copy_scoreboard_worker() to include/scoreboard.h, modules/generators/mod_status.c, modules/lua/lua_request.c, server/scoreboard.c. - CVE-2014-0226 * SECURITY UPDATE: denial of service in mod_cgid - debian/patches/CVE-2014-0231.patch: added new configuration option CGIDScriptTimeout in modules/generators/mod_cgid.c. - CVE-2014-0231 Checksums-Sha1: 38104e7956f9ad5d4d805627cfbdc9b37991e627 1464 libapache2-mod-proxy-html_2.4.7-1ubuntu4.1_amd64.deb bd665395cf60a2b7862ec7817d445965c7339ad7 1452 libapache2-mod-macro_2.4.7-1ubuntu4.1_amd64.deb 8d34269035df54a473400ef098795f3789ce29dc 87534 apache2_2.4.7-1ubuntu4.1_amd64.deb f22d57dde9169afc9a0ab6ef0547c38c7dd9e489 838846 apache2-bin_2.4.7-1ubuntu4.1_amd64.deb 604ee0e8be77fe71cf0b2281276d4798fa10aa0f 1460 apache2-mpm-worker_2.4.7-1ubuntu4.1_amd64.deb b2f2ef54e7fc47060a3d5dc9fde1a952745537c0 1460 apache2-mpm-prefork_2.4.7-1ubuntu4.1_amd64.deb 3ca4a648bcee1e4a75af9caa77c882bad7ae54a7 1456 apache2-mpm-event_2.4.7-1ubuntu4.1_amd64.deb b3da3d4184d4f4c0f37da530d269614853f22d35 1458 apache2-mpm-itk_2.4.7-1ubuntu4.1_amd64.deb c082215e0c099c3fe5731c116831db3a39463fa5 1474 apache2.2-bin_2.4.7-1ubuntu4.1_amd64.deb 1f9b19d6834b8c40fe9373d6ce3ab193c65f1e9f 83346 apache2-utils_2.4.7-1ubuntu4.1_amd64.deb de88f899acd7757a08452419245a4dae7aa3b18c 1436 apache2-suexec_2.4.7-1ubuntu4.1_amd64.deb 29323ccb8de6033447656c3bdf543d8bf1fb82bf 13746 apache2-suexec-pristine_2.4.7-1ubuntu4.1_amd64.deb 0a816dcef27abfeb35a73f52f6aea38fcb0372e1 15278 apache2-suexec-custom_2.4.7-1ubuntu4.1_amd64.deb 7d63fb28afb507529195b9b91fcb03c7b6ad2b16 166940 apache2-dev_2.4.7-1ubuntu4.1_amd64.deb 35af6daa599d2bca8a8e04911ba0947a2f4b8630 1949888 apache2-dbg_2.4.7-1ubuntu4.1_amd64.deb Checksums-Sha256: 728d0c2e7e08ae0100033bde5ea3b4b3d08dde394405682d9a5f4d0ee02d5ca9 1464 libapache2-mod-proxy-html_2.4.7-1ubuntu4.1_amd64.deb 56246e2a61ec9b0a9dd1b9bd11d38e4b93cf25bb9713d79936c12e310063f98f 1452 libapache2-mod-macro_2.4.7-1ubuntu4.1_amd64.deb 5e7464c1ccc21bd7bf63d26f160439664176d3d4f7238a675d20aad17635c159 87534 apache2_2.4.7-1ubuntu4.1_amd64.deb 0a72e8428191738bcc786eb2d6ee5e1ce8be1a2088caab554b2b9d08764ec9c5 838846 apache2-bin_2.4.7-1ubuntu4.1_amd64.deb 172e66a5b746feef53d23ca09624d0375ac3daff7f013985947945f4311aa7a9 1460 apache2-mpm-worker_2.4.7-1ubuntu4.1_amd64.deb 2939812fc6db819665afa3b0f6569c915236df4e6ba4591337b89582fb8d99e7 1460 apache2-mpm-prefork_2.4.7-1ubuntu4.1_amd64.deb ab0804ef1df86d77c75dcc06cce80207e7bfb6058c23401f39ea9a7454a69c02 1456 apache2-mpm-event_2.4.7-1ubuntu4.1_amd64.deb 22b85e85693fc3b232a3721441664b3dda57ab919dc7b4b84b53b1b7345762e2 1458 apache2-mpm-itk_2.4.7-1ubuntu4.1_amd64.deb 2dead7b6d97834094f1ebf7e5737784add6bd3fcdaaaeebc9f3ef251aa3cff1d 1474 apache2.2-bin_2.4.7-1ubuntu4.1_amd64.deb d8d091d107284407143f169454e2042f0be3905a868329de5a446d78c3a38170 83346 apache2-utils_2.4.7-1ubuntu4.1_amd64.deb 98a4e2b0d8684bdd09e6688832b95e07478420d8f366d804fe444ce7391ad4e1 1436 apache2-suexec_2.4.7-1ubuntu4.1_amd64.deb 0f81323787dc813253d78eeac6d4708e3df8d94f9e6595dcf61ee24e2fa8ed31 13746 apache2-suexec-pristine_2.4.7-1ubuntu4.1_amd64.deb 8d9ff5c824575b26cd89c2bfa478824646ce4540a4a9e0895b2f67ecb201cb7d 15278 apache2-suexec-custom_2.4.7-1ubuntu4.1_amd64.deb 75997848dfec3e736a5eaa450be101ea8b440bb6aae6e29e8cb1a249893a042b 166940 apache2-dev_2.4.7-1ubuntu4.1_amd64.deb e3c6564dd098a4b4706d7a6dbb74e57b38da14d6aa7e1db69ed8304223ccfbe7 1949888 apache2-dbg_2.4.7-1ubuntu4.1_amd64.deb Files: 84a09bcae9026b3cd91acd9c43cadd52 1464 oldlibs extra libapache2-mod-proxy-html_2.4.7-1ubuntu4.1_amd64.deb 1582100557177cbf9e6539c842f4e58b 1452 oldlibs extra libapache2-mod-macro_2.4.7-1ubuntu4.1_amd64.deb 76c804fdb20b0622b58c2fa0dc9c81e0 87534 httpd optional apache2_2.4.7-1ubuntu4.1_amd64.deb 0e7f023340079a53a78505d331fa75d6 838846 httpd optional apache2-bin_2.4.7-1ubuntu4.1_amd64.deb bb746b909ac66988aade4eb522e93cc3 1460 oldlibs extra apache2-mpm-worker_2.4.7-1ubuntu4.1_amd64.deb f9647e2e88ddde5ae7852ceebb7077e0 1460 oldlibs extra apache2-mpm-prefork_2.4.7-1ubuntu4.1_amd64.deb d82547cce6704b0cd36d6814d501737b 1456 oldlibs extra apache2-mpm-event_2.4.7-1ubuntu4.1_amd64.deb 680257a9880677155abe9645218dc46b 1458 oldlibs extra apache2-mpm-itk_2.4.7-1ubuntu4.1_amd64.deb f56ee2414e401c38bdd918df4619b908 1474 oldlibs extra apache2.2-bin_2.4.7-1ubuntu4.1_amd64.deb 9eb928379328331adab70f34d532fa44 83346 httpd optional apache2-utils_2.4.7-1ubuntu4.1_amd64.deb 0c2a60e450baf35e86d59c8a837e6591 1436 oldlibs extra apache2-suexec_2.4.7-1ubuntu4.1_amd64.deb 7ae8dbb25139d1f8896e3d9871eb5f3e 13746 httpd optional apache2-suexec-pristine_2.4.7-1ubuntu4.1_amd64.deb 8344efeafe55f72633fe71f00e230b44 15278 httpd extra apache2-suexec-custom_2.4.7-1ubuntu4.1_amd64.deb 8637f2769ddaddb2b63be9d001700f98 166940 httpd optional apache2-dev_2.4.7-1ubuntu4.1_amd64.deb 9b736ce0ad700be14ae2b18a7b67bd01 1949888 debug extra apache2-dbg_2.4.7-1ubuntu4.1_amd64.deb Original-Maintainer: Debian Apache Maintainers