Fw: cvs commit: ports/www/apache2 Makefile Makefile.doc
Makefile.modules.3rd ports/www/apache2/files
patch-secfix-modules:dav:fs:lock.c patch-secfix-server:utils.c
patch-secfix-srclib:apr-util:test:testuri.c
Clement Laforet
sheepkiller at cultdeadsheep.org
Wed Sep 15 10:07:02 PDT 2004
FYI.
Begin forwarded message:
Date: Wed, 15 Sep 2004 16:54:37 +0000 (UTC)
From: Clement Laforet <clement at FreeBSD.org>
To: ports-committers at FreeBSD.org, cvs-ports at FreeBSD.org, cvs-all at FreeBSD.org
Subject: cvs commit: ports/www/apache2 Makefile Makefile.doc Makefile.modules.3rd ports/www/apache2/files patch-secfix-modules:dav:fs:lock.c patch-secfix-server:utils.c patch-secfix-srclib:apr-util:test:testuri.c
clement 2004-09-15 16:54:37 UTC
FreeBSD ports repository
Modified files:
www/apache2 Makefile Makefile.doc
Makefile.modules.3rd
Added files:
www/apache2/files patch-secfix-modules:dav:fs:lock.c
patch-secfix-server:utils.c
patch-secfix-srclib:apr-util:test:testuri.c
Log:
Security fixes [1]:
*) SECURITY: CAN-2004-0786 (cve.mitre.org)
Fix an input validation issue in apr-util which could be
triggered by malformed IPv6 literal addresses. [Joe Orton]
*) SECURITY: CAN-2004-0747 (cve.mitre.org)
Fix buffer overflow in expansion of environment variables in
configuration file parsing. [Andr<E9> Malo]
*) SECURITY: CAN-2004-0809 (cve.mitre.org)
mod_dav_fs: Fix a segfault in the handling of an indirect lock
refresh. PR 31183. [Joe Orton]
- Update documentation (finally!) and fix WITH_<CATEGORY>_MODULES
for special modules like LDAP or SSL [2]
Noticed by: nectar [1]
Requested by: Emile Heitor <imil at home dot imil dot net> [2]
Approved by: portmgr (marcus)
Revision Changes Path
1.199 +17 -3 ports/www/apache2/Makefile
1.10 +23 -18 ports/www/apache2/Makefile.doc
1.11 +2 -2 ports/www/apache2/Makefile.modules.3rd
1.1 +46 -0 ports/www/apache2/files/patch-secfix-modules:dav:fs:lock.c (new)
1.1 +132 -0 ports/www/apache2/files/patch-secfix-server:utils.c (new)
1.1 +33 -0 ports/www/apache2/files/patch-secfix-srclib:apr-util:test:testuri.c (new)
--
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 187 bytes
Desc: not available
Url : http://lists.freebsd.org/pipermail/freebsd-apache/attachments/20040915/17f67d07/attachment.bin
More information about the freebsd-apache
mailing list