Date: Wed, 15 Sep 2004 19:06:33 +0200 From: Clement Laforet <sheepkiller@cultdeadsheep.org> To: apache@FreeBSD.org Subject: Fw: cvs commit: ports/www/apache2 Makefile Makefile.doc Makefile.modules.3rd ports/www/apache2/files patch-secfix-modules:dav:fs:lock.c patch-secfix-server:utils.c patch-secfix-srclib:apr-util:test:testuri.c Message-ID: <20040915190633.11840166.sheepkiller@cultdeadsheep.org>
index | next in thread | raw e-mail
[-- Attachment #1 --]
FYI.
Begin forwarded message:
Date: Wed, 15 Sep 2004 16:54:37 +0000 (UTC)
From: Clement Laforet <clement@FreeBSD.org>
To: ports-committers@FreeBSD.org, cvs-ports@FreeBSD.org, cvs-all@FreeBSD.org
Subject: cvs commit: ports/www/apache2 Makefile Makefile.doc Makefile.modules.3rd ports/www/apache2/files patch-secfix-modules:dav:fs:lock.c patch-secfix-server:utils.c patch-secfix-srclib:apr-util:test:testuri.c
clement 2004-09-15 16:54:37 UTC
FreeBSD ports repository
Modified files:
www/apache2 Makefile Makefile.doc
Makefile.modules.3rd
Added files:
www/apache2/files patch-secfix-modules:dav:fs:lock.c
patch-secfix-server:utils.c
patch-secfix-srclib:apr-util:test:testuri.c
Log:
Security fixes [1]:
*) SECURITY: CAN-2004-0786 (cve.mitre.org)
Fix an input validation issue in apr-util which could be
triggered by malformed IPv6 literal addresses. [Joe Orton]
*) SECURITY: CAN-2004-0747 (cve.mitre.org)
Fix buffer overflow in expansion of environment variables in
configuration file parsing. [Andr<E9> Malo]
*) SECURITY: CAN-2004-0809 (cve.mitre.org)
mod_dav_fs: Fix a segfault in the handling of an indirect lock
refresh. PR 31183. [Joe Orton]
- Update documentation (finally!) and fix WITH_<CATEGORY>_MODULES
for special modules like LDAP or SSL [2]
Noticed by: nectar [1]
Requested by: Emile Heitor <imil at home dot imil dot net> [2]
Approved by: portmgr (marcus)
Revision Changes Path
1.199 +17 -3 ports/www/apache2/Makefile
1.10 +23 -18 ports/www/apache2/Makefile.doc
1.11 +2 -2 ports/www/apache2/Makefile.modules.3rd
1.1 +46 -0 ports/www/apache2/files/patch-secfix-modules:dav:fs:lock.c (new)
1.1 +132 -0 ports/www/apache2/files/patch-secfix-server:utils.c (new)
1.1 +33 -0 ports/www/apache2/files/patch-secfix-srclib:apr-util:test:testuri.c (new)
--
[-- Attachment #2 --]
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.5 (FreeBSD)
iD8DBQFBSHaZsRhfjwcjuh0RAod6AKC1EydOQkL0uJSZHztFkn3X9BAA9gCdEJiw
JqK52aHmzavjaAG1oA1N2Mc=
=XLPC
-----END PGP SIGNATURE-----
help
Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20040915190633.11840166.sheepkiller>
