FreshPorts -- The Place For Ports notbug Mon, 28 May 2012 3:20 AM BST
non port: www/apache20/files/patch-CVE-2010-0434
CVSWeb

Number of commits found: 2

Thu, 21 Oct 2010
[ 05:55 pgollucci ] Original commit 
1.296 www/apache20/Makefile
1.74 www/apache20/distinfo
1.2 www/apache20/files/patch-CVE-2008-2364
1.2 www/apache20/files/patch-CVE-2008-2939
1.3 www/apache20/files/patch-CVE-2009-3555
1.2 www/apache20/files/patch-CVE-2010-0434
1.6 www/apache20/files/patch-configure.in
1.2 www/apache20/files/patch-docs__conf__httpd-std.conf.in
1.1 www/apache20/files/patch-include__ap_regex.h
1.1 www/apache20/files/patch-include__http_core.h

(Only the first 10 of 33 ports in this commit are shown above. View all ports for this commit)
- Update to 2.0.64
- normalize patch-pcre.diff into makepatch format
- All 4 CVE patches are included upstream and part of 2.0.64
- part of the local apxs.in changes are upstream now too
- some patches were regenerated for offset updates

  ** There is NO security update here.  **

Changes:    http://www.apache.org/dist/httpd/CHANGES_2.0
With Hat:   apache@

<ChangeLog>
  *) SECURITY: CVE-2010-1452 (cve.mitre.org)
     mod_dav: Fix Handling of requests without a path segment.
     PR: 49246 [Mark Drayton, Jeff Trawick]
(Only the first 15 lines of the commit message are shown above View all of this commit message)
Thu, 13 May 2010
[ 00:30 pgollucci ] Original commit 
1.278 www/apache20/Makefile
1.1 www/apache20/files/patch-CVE-2008-2364
1.2 www/apache20/files/patch-CVE-2009-3555
1.1 www/apache20/files/patch-CVE-2010-0434
- Fix openssl rengotiation patch [1]
- Fix the openssl from ports flag
- Bump PORTREVISION
- Also patch 2 more CVEs

 *) SECURITY: CVE-2010-0434 (cve.mitre.org)
     Ensure each subrequest has a shallow copy of headers_in so that the
     parent request headers are not corrupted.  Elimiates a problematic
     optimization in the case of no request body.  PR 48359
     [Jake Scott, William Rowe, Ruediger Pluem]

  *) SECURITY: CVE-2008-2364 (cve.mitre.org)
     mod_proxy_http: Better handling of excessive interim responses
     from origin server to prevent potential denial of service and high
     memory usage. Reported by Ryujiro Shibuya. [Ruediger Pluem,
     Joe Orton, Jim Jagielski]

PR:             ports/146389 [1]
Submitted by:   several [1]
With Hat:       apache@

Number of commits found: 2

Login
User Login
Create account

Servers and bandwidth provided by
New York Internet
SuperNews

Search
Enter Keywords:
 
more...

Latest Vulnerabilities
haproxyMay 24
foswikiMay 21
inspircd*May 21
inspircd12*May 21
sympaMay 21
sympa5May 21
libxml2May 18
pidgin-otrMay 16
sudoMay 16
chromiumMay 15
chromiumMay 15
pivotx*May 14
socatMay 14
libpurpleMay 12
php5May 12

12 vulnerabilities affecting 17 ports have been reported in the past 14 days

* - modified, not new

All vulnerabilities


Ports
Home
Categories
Deleted ports
Sanity Test Failures
Newsfeeds


Statistics
Graphs
NEW Graphs (Javascript)
Traffic

Calculated hourly:
Port count 23676
Broken 193
Deprecated 147
Ignore 737
Forbidden 3
Restricted 328
No CDROM 110
Vulnerable 0
Expired 44
Set to expire 188
Interactive 54
new 24 hours 4
new 48 hours6
new 7 days60
new fortnight184
new month252

This site
What is FreshPorts?
About the Authors
FAQ
How big is it?
The latest upgrade!
Privacy
Forums
Blog
Contact

Servers and bandwidth provided by
New York Internet
SuperNews
Valid HTML, CSS, and RSS.
Copyright © 2000-2012 DVL Software Limited. All rights reserved.
This page created in 0.211 seconds.