-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.8 Date: Sat, 24 Jul 2010 22:18:43 +0200 Source: apache2 Binary: apache2.2-common apache2.2-bin apache2-mpm-worker apache2-mpm-prefork apache2-mpm-event apache2-mpm-itk apache2-utils apache2-suexec apache2-suexec-custom apache2 apache2-doc apache2-prefork-dev apache2-threaded-dev apache2-dbg Architecture: source all i386 Version: 2.2.16-1 Distribution: unstable Urgency: medium Maintainer: Debian Apache Maintainers <debian-apache@lists.debian.org> Changed-By: Stefan Fritsch <sf@debian.org> Description: apache2 - Apache HTTP Server metapackage apache2-dbg - Apache debugging symbols apache2-doc - Apache HTTP Server documentation apache2-mpm-event - Apache HTTP Server - event driven model apache2-mpm-itk - multiuser MPM for Apache 2.2 apache2-mpm-prefork - Apache HTTP Server - traditional non-threaded model apache2-mpm-worker - Apache HTTP Server - high speed threaded model apache2-prefork-dev - Apache development headers - non-threaded MPM apache2-suexec - Standard suexec program for Apache 2 mod_suexec apache2-suexec-custom - Configurable suexec program for Apache 2 mod_suexec apache2-threaded-dev - Apache development headers - threaded MPM apache2-utils - utility programs for webservers apache2.2-bin - Apache HTTP Server common binary files apache2.2-common - Apache HTTP Server common files Changes: apache2 (2.2.16-1) unstable; urgency=medium . * Urgency medium for security fix. * New upstream release: - CVE-2010-1452: mod_dav, mod_cache: Fix denial of service vulnerability due to incorrect handling of requests without a path segment. - mod_dir: add FallbackResource directive, to enable admin to specify an action to happen when a URL maps to no file, without resorting to ErrorDocument or mod_rewrite * Fix mod_ssl header line corruption because of using memcpy for overlapping buffers. PR 45444. LP: #609290, #589611, #595116 Checksums-Sha1: 86eddbc1083cfc29d892ce778f2bbd547fbd4a48 1795 apache2_2.2.16-1.dsc 6937bd8b127541d6700b870681120b2b4cc79ba9 6369022 apache2_2.2.16.orig.tar.gz c94c51da7e3c164fae5370cb0614934e73325319 203651 apache2_2.2.16-1.diff.gz 6cb2b0fd5c21fc4039d8063acc7ca79ec1e5925c 2301280 apache2-doc_2.2.16-1_all.deb d2ebd7558fe1349ce99984ff7bac9a6e491ceb15 304238 apache2.2-common_2.2.16-1_i386.deb 3de18bfdf0254336b7ab48de4de3aaa2c594e774 1345624 apache2.2-bin_2.2.16-1_i386.deb 8623b20c05fe69e25d791196651e587ba1b8c0a6 2230 apache2-mpm-worker_2.2.16-1_i386.deb dde4adb96155e1226c95aa0b1abf67cb973a6053 2284 apache2-mpm-prefork_2.2.16-1_i386.deb 5a67ad32d356c63ab01d89ce864cc32d9b19b7a8 2256 apache2-mpm-event_2.2.16-1_i386.deb 5379650664c56c7384963868e642a7fdbeba04dd 2284 apache2-mpm-itk_2.2.16-1_i386.deb c7ce872efac7afb075bab2f3ed91ce22b8daa2a7 162970 apache2-utils_2.2.16-1_i386.deb 35c0ce593252e0e8735c4ce3860ff8d05f140276 97642 apache2-suexec_2.2.16-1_i386.deb 853c6394cf50445c179ea52e77c613e52ea83746 99332 apache2-suexec-custom_2.2.16-1_i386.deb 4a6192d6bff4c3fdc3eaf262b88f6c1ff7f7e1b5 1378 apache2_2.2.16-1_i386.deb 20f218a3a4cfd3cefe4f2ceebdc88ac7f8a7d7da 137402 apache2-prefork-dev_2.2.16-1_i386.deb d560fc397787f606f2df51e569ee02ca8c76105e 138550 apache2-threaded-dev_2.2.16-1_i386.deb b6042f62f5713a25d32bdc49f46be029dc357b3c 2676120 apache2-dbg_2.2.16-1_i386.deb Checksums-Sha256: 9202b38d093be213c3f6a9a6919aa84fc36f10e5848fb0e07a6b547181cb95d1 1795 apache2_2.2.16-1.dsc 72cdbaf0525b4c956532b308a0344ca7c287eb12759472481ae4affca71b6ed3 6369022 apache2_2.2.16.orig.tar.gz b5863ceb0c740dbee365d6ffc4f9b4ef575338da3f0e7d620c67733098af5d60 203651 apache2_2.2.16-1.diff.gz e05dcf18086861b5a6063e064605c492d0b63e0b878838268921676f310615c6 2301280 apache2-doc_2.2.16-1_all.deb cd192509ef6e16b1cd5ba1d9e1509bd24a0a76f7370a7ce9d3cf63b9eaa0c3c0 304238 apache2.2-common_2.2.16-1_i386.deb 8bc2a8d8a7800890346d38afb9021f1755499af7e28dc9cc1c608b481198fcbf 1345624 apache2.2-bin_2.2.16-1_i386.deb 3b6a4fa9f7ef45501ec5cb6fa423cb49d2c80e03a8e823177358a0926003ae0b 2230 apache2-mpm-worker_2.2.16-1_i386.deb b7a5853b72854947503071bac814124a525dbe6047ffbb7218f50c27d1a54991 2284 apache2-mpm-prefork_2.2.16-1_i386.deb c1887f95b9a432096fbb27114b6b920a6e3b971216e712aad92c2a7cfeaee24f 2256 apache2-mpm-event_2.2.16-1_i386.deb bb44c2c199140e71175440e4c13d1c72c4800b04af0d260327deb4d7a144fa2e 2284 apache2-mpm-itk_2.2.16-1_i386.deb 3fb2003445b87d5519b9c308ee9efe187beb65615ed21427aad013afb7a2f8be 162970 apache2-utils_2.2.16-1_i386.deb 54fb53a3c78f1e0d6c209e5786b9475a16db9a718b64b8dcabae182130cccc87 97642 apache2-suexec_2.2.16-1_i386.deb 418ce5bdfc01f404fe565dbc49b0556a6e264569469d3c51fb4c2f6e3492f0fd 99332 apache2-suexec-custom_2.2.16-1_i386.deb aa2e242592849ebf66c2bf57e4d364a97f54fe5495dbd83a9476870e073b6c86 1378 apache2_2.2.16-1_i386.deb 2be755a0a45d79b4e954385f551982ce624fbcbf467c8416d3cb9bd9ec772f0f 137402 apache2-prefork-dev_2.2.16-1_i386.deb 4d40c9af8ed685c1ac43f7f1d01e8c81d330f809bb134497c10018185d53019f 138550 apache2-threaded-dev_2.2.16-1_i386.deb 32faa39e3f6bab2166242bf73f949ce1ba32c513de106dd3ce91b811af2e392b 2676120 apache2-dbg_2.2.16-1_i386.deb Files: af1885d5191be56753df26281e5bacc2 1795 httpd optional apache2_2.2.16-1.dsc 7f33f2c8b213ad758c009ae46d2795ed 6369022 httpd optional apache2_2.2.16.orig.tar.gz e9dbf61876f479c745272bec9bbcad47 203651 httpd optional apache2_2.2.16-1.diff.gz dfdb70cfc4bfe32b9c8bb138fded14c1 2301280 doc optional apache2-doc_2.2.16-1_all.deb 4846a6b27df6cd00f392c95559bafd10 304238 httpd optional apache2.2-common_2.2.16-1_i386.deb 3bba40aeadbda8820e32595bd78b9989 1345624 httpd optional apache2.2-bin_2.2.16-1_i386.deb 6d9244367d2b1e6b485de93fb5c3de38 2230 httpd optional apache2-mpm-worker_2.2.16-1_i386.deb 038c016501820a3bcf64929e87d19160 2284 httpd optional apache2-mpm-prefork_2.2.16-1_i386.deb 6d96721df5d0d803ea7b02322aa8ab38 2256 httpd optional apache2-mpm-event_2.2.16-1_i386.deb e0a7314cf5b071e85088ea3b4d9f3aa6 2284 httpd extra apache2-mpm-itk_2.2.16-1_i386.deb 66bec2b708924b006bba8aae813c2172 162970 httpd optional apache2-utils_2.2.16-1_i386.deb e61df0f09d8ac0e52a2ad03bf6d52705 97642 httpd optional apache2-suexec_2.2.16-1_i386.deb 476fc3b4304688b0c9ea6ac283341b75 99332 httpd extra apache2-suexec-custom_2.2.16-1_i386.deb ed300231493c300227baf681fbc91bd9 1378 httpd optional apache2_2.2.16-1_i386.deb 5aa055f404fb23f3e6fb7c9504f8d696 137402 httpd extra apache2-prefork-dev_2.2.16-1_i386.deb bc5021f45b2b3aa425cea660150d0a17 138550 httpd extra apache2-threaded-dev_2.2.16-1_i386.deb a51a9c9ce279886930a72825b0b97636 2676120 debug extra apache2-dbg_2.2.16-1_i386.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.9 (GNU/Linux) iD8DBQFMS04ibxelr8HyTqQRAl3uAJ9Rnu0Lm0BYx2PUJXh5YCZmzznbOACfTErh y9TIh1zHWGn/OpdIyq+hyxQ= =oNpW -----END PGP SIGNATURE----- Accepted: apache2-dbg_2.2.16-1_i386.deb to main/a/apache2/apache2-dbg_2.2.16-1_i386.deb apache2-doc_2.2.16-1_all.deb to main/a/apache2/apache2-doc_2.2.16-1_all.deb apache2-mpm-event_2.2.16-1_i386.deb to main/a/apache2/apache2-mpm-event_2.2.16-1_i386.deb apache2-mpm-itk_2.2.16-1_i386.deb to main/a/apache2/apache2-mpm-itk_2.2.16-1_i386.deb apache2-mpm-prefork_2.2.16-1_i386.deb to main/a/apache2/apache2-mpm-prefork_2.2.16-1_i386.deb apache2-mpm-worker_2.2.16-1_i386.deb to main/a/apache2/apache2-mpm-worker_2.2.16-1_i386.deb apache2-prefork-dev_2.2.16-1_i386.deb to main/a/apache2/apache2-prefork-dev_2.2.16-1_i386.deb apache2-suexec-custom_2.2.16-1_i386.deb to main/a/apache2/apache2-suexec-custom_2.2.16-1_i386.deb apache2-suexec_2.2.16-1_i386.deb to main/a/apache2/apache2-suexec_2.2.16-1_i386.deb apache2-threaded-dev_2.2.16-1_i386.deb to main/a/apache2/apache2-threaded-dev_2.2.16-1_i386.deb apache2-utils_2.2.16-1_i386.deb to main/a/apache2/apache2-utils_2.2.16-1_i386.deb apache2.2-bin_2.2.16-1_i386.deb to main/a/apache2/apache2.2-bin_2.2.16-1_i386.deb apache2.2-common_2.2.16-1_i386.deb to main/a/apache2/apache2.2-common_2.2.16-1_i386.deb apache2_2.2.16-1.diff.gz to main/a/apache2/apache2_2.2.16-1.diff.gz apache2_2.2.16-1.dsc to main/a/apache2/apache2_2.2.16-1.dsc apache2_2.2.16-1_i386.deb to main/a/apache2/apache2_2.2.16-1_i386.deb apache2_2.2.16.orig.tar.gz to main/a/apache2/apache2_2.2.16.orig.tar.gz