Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 1 Aug 2012 22:28:15 -0400
From:      Wesley Shields <wxs@FreeBSD.org>
To:        apache@FreeBSD.org
Cc:        ports-security@FreeBSD.org
Subject:   Re: Apache 2.2.22 vuln
Message-ID:  <20120802022815.GA11600@atarininja.org>
In-Reply-To: <7c8467ef6164399c7fc1d11960768453@nyi.unixathome.org>
References:  <7c8467ef6164399c7fc1d11960768453@nyi.unixathome.org>

next in thread | previous in thread | raw e-mail | index | archive | help
On Wed, Aug 01, 2012 at 11:48:02AM -0400, Dan Langille wrote:
> This post to apache@ seems to indicate that Apache 2.2.22 is vulnerable
> 
>    
> http://lists.freebsd.org/pipermail/freebsd-apache/2012-June/002778.html

Would someone from apache@ please commit the patch at [1] to
www/apache22. I will be committing a VuXML about this. I will also be
marking www/apache20 as vulnerable because AFAIK it is but there's no
official patch for it. If I don't see it committed by Friday evening
(GMT-5) I will just do it myself.

[1]:
http://svn.apache.org/viewvc/httpd/httpd/branches/2.2.x/support/envvars-std.in?r1=421103&r2=1341651

-- WXS



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20120802022815.GA11600>