-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Sun, 25 May 2014 17:35:34 +0200 Source: apache2 Binary: apache2.2-common apache2.2-bin apache2-mpm-worker apache2-mpm-prefork apache2-mpm-event apache2-mpm-itk apache2-utils apache2-suexec apache2-suexec-custom apache2 apache2-doc apache2-prefork-dev apache2-threaded-dev apache2-dbg Architecture: source i386 all Version: 2.2.22-13+deb7u2 Distribution: wheezy Urgency: medium Maintainer: Debian Apache Maintainers <debian-apache@lists.debian.org> Changed-By: Stefan Fritsch <sf@debian.org> Description: apache2 - Apache HTTP Server metapackage apache2-dbg - Apache debugging symbols apache2-doc - Apache HTTP Server documentation apache2-mpm-event - Apache HTTP Server - event driven model apache2-mpm-itk - multiuser MPM for Apache 2.2 apache2-mpm-prefork - Apache HTTP Server - traditional non-threaded model apache2-mpm-worker - Apache HTTP Server - high speed threaded model apache2-prefork-dev - Apache development headers - non-threaded MPM apache2-suexec - Standard suexec program for Apache 2 mod_suexec apache2-suexec-custom - Configurable suexec program for Apache 2 mod_suexec apache2-threaded-dev - Apache development headers - threaded MPM apache2-utils - utility programs for webservers apache2.2-bin - Apache HTTP Server common binary files apache2.2-common - Apache HTTP Server common files Changes: apache2 (2.2.22-13+deb7u2) wheezy; urgency=medium . * Backport support for SSL ECC keys and ECDH ciphers. . Bump build-dependency for libssl-dev to 1.0.1e-2+deb7u8 to get the compatibility fix for older Safari browsers. Apache2 will still run with older libssl-1.0.0 but without the compatibility fix. . In case of problems, see README.Debian. . * CVE-2013-6438: mod_dav: Fix potential denial of service from specifically crafted DAV WRITE requests. . * mod_log_config: Fix a bug that cookies whose values contain '=' would only be logged partially. This is related to CVE-2014-0098, but Apache 2.2.22 is not vulnerable to this issue. . * mod_proxy: Fix crashes under high load with threaded mpms. https://issues.apache.org/bugzilla/show_bug.cgi?id=50335 Checksums-Sha1: 0ebd1052dcc2cda29f084375cfe50ae93404006b 2899 apache2_2.2.22-13+deb7u2.dsc a8dbe054984aef764f75f9c716446fa26da32ea7 207621 apache2_2.2.22-13+deb7u2.debian.tar.gz 3479112f299271a44c72a0cb074eeb0e50f1b1f6 291606 apache2.2-common_2.2.22-13+deb7u2_i386.deb 8bcacfbc8f41f6b0854479a3d87dfe1b53c9ab38 770928 apache2.2-bin_2.2.22-13+deb7u2_i386.deb 7e7fc9e6b661ed1fb98ce222e187cd94459051d7 2238 apache2-mpm-worker_2.2.22-13+deb7u2_i386.deb 9ef0be7312f703b665ab45341fad73f2aaca2411 2348 apache2-mpm-prefork_2.2.22-13+deb7u2_i386.deb bf7fca987532d116f7d58228ec5c65d62aee5ce7 2314 apache2-mpm-event_2.2.22-13+deb7u2_i386.deb 83ef02068a33cdb80ed6aa799096e2fe49babf91 2340 apache2-mpm-itk_2.2.22-13+deb7u2_i386.deb 0f644f244b077bbca95365d067c80516f10a1dea 162822 apache2-utils_2.2.22-13+deb7u2_i386.deb f7626fb8c1e43fddc5f96bfd6434fee39ff5092f 106040 apache2-suexec_2.2.22-13+deb7u2_i386.deb 81236b4a58df69badb26e50d1c79afe2e0530127 107572 apache2-suexec-custom_2.2.22-13+deb7u2_i386.deb 2b1b80123171b6429f4785c2e67b46d5510c7792 1438 apache2_2.2.22-13+deb7u2_i386.deb b418aa7371dfc8e3f926328724d75420b5e8653f 1774030 apache2-doc_2.2.22-13+deb7u2_all.deb ebd9fc9bb861deafd37ccad05f5f6fb4c5d6a6b5 114426 apache2-prefork-dev_2.2.22-13+deb7u2_i386.deb f70b4c5714dc28a3abda8928f29c1764635dd410 115278 apache2-threaded-dev_2.2.22-13+deb7u2_i386.deb fb0d145bed43aaa4ea44a12a58346f58652c86a3 1634902 apache2-dbg_2.2.22-13+deb7u2_i386.deb Checksums-Sha256: 878b48ae71278a9c4d6a0bb3c2522e309f6ff9835c4ce1e0d58c130e7df8db6f 2899 apache2_2.2.22-13+deb7u2.dsc 21d15ce6bcf5a80c6af55a89c6ce85cf8f75223588ff7fbac33b960f4e95c164 207621 apache2_2.2.22-13+deb7u2.debian.tar.gz cdfd0266ebe1d88fe669a3568f7b8a88689e7e6a2f716497bd42631676239787 291606 apache2.2-common_2.2.22-13+deb7u2_i386.deb 6b0311631b946f1871b5d65eb47f494afe49ac0bebc2d2f524c6d3eff72921c0 770928 apache2.2-bin_2.2.22-13+deb7u2_i386.deb 94d168952c6a9ab901cd47e8495ca351b2e38c50787cfb95a3eecc920379b4c4 2238 apache2-mpm-worker_2.2.22-13+deb7u2_i386.deb d774c74d712309e91ce5ae1dc8b2f84e22869f6e1d1796a87a750ed31688d11d 2348 apache2-mpm-prefork_2.2.22-13+deb7u2_i386.deb 6d5d0802338778577f42088fce59a3d96299b67110b8ad257405a6170abd993e 2314 apache2-mpm-event_2.2.22-13+deb7u2_i386.deb 628b30501309ea6cc374c1cbf73ba4ecdc72c7baa439115b7cf6c9582a62d7c1 2340 apache2-mpm-itk_2.2.22-13+deb7u2_i386.deb 1b538cad63f408647a5aee24686fe2b5d2e847da1853d4d1f398bbcf7bb9b354 162822 apache2-utils_2.2.22-13+deb7u2_i386.deb f40d8c66d62202f451aaa277ca95dcc1cdeadd00cb1654eeae04d72e51a22fc7 106040 apache2-suexec_2.2.22-13+deb7u2_i386.deb 2a5895bc1007fe8be2a0cf270fd13a0521713c278f9f1dd5f1d79355910fbdad 107572 apache2-suexec-custom_2.2.22-13+deb7u2_i386.deb c5ad8b04ae5189a1096bad7f04663ae73b8fc8ce3fa81c2f44057f9609ab7d67 1438 apache2_2.2.22-13+deb7u2_i386.deb 3c46e42ad88b2b341a3fe47a3aea83f4f3dd779f7fecd5e0f36b339564bfb4af 1774030 apache2-doc_2.2.22-13+deb7u2_all.deb 492ef8b83336e451944f7cfdbcc9e479f869ca3b83f619fb2e3e2e90fcb85c6f 114426 apache2-prefork-dev_2.2.22-13+deb7u2_i386.deb afcd1c91129d11e98ab20702a4fe745b0fe7a12d5cdf189be8c6b26f71f2fc63 115278 apache2-threaded-dev_2.2.22-13+deb7u2_i386.deb 3940ed325465d394ef7a153f4e13fdc3e706d4f885d5abe4b00156eddde965e6 1634902 apache2-dbg_2.2.22-13+deb7u2_i386.deb Files: 640b6c6cc4fa6d6f5994dc6d8852e69d 2899 httpd optional apache2_2.2.22-13+deb7u2.dsc 975c292fee7b7e817fe3a73283d29577 207621 httpd optional apache2_2.2.22-13+deb7u2.debian.tar.gz 6566c84580718d7268b6d9fffdf65193 291606 httpd optional apache2.2-common_2.2.22-13+deb7u2_i386.deb c7e93d4674deb5dfa6527e18ea8f8cd9 770928 httpd optional apache2.2-bin_2.2.22-13+deb7u2_i386.deb 807ee4dcc30adeb8a749097325e224ac 2238 httpd optional apache2-mpm-worker_2.2.22-13+deb7u2_i386.deb a2ff558d409b7dbb6daa1a5f2ff6518b 2348 httpd optional apache2-mpm-prefork_2.2.22-13+deb7u2_i386.deb 4d2ae057b6e680c9331c7a110bd19bd5 2314 httpd optional apache2-mpm-event_2.2.22-13+deb7u2_i386.deb 213be219f7a62ff3cb7a60a7b127127b 2340 httpd extra apache2-mpm-itk_2.2.22-13+deb7u2_i386.deb 86aa0486188a8e1efa4edafb9cb02e2d 162822 httpd optional apache2-utils_2.2.22-13+deb7u2_i386.deb aaad33a1c3602776686fab8792e32c67 106040 httpd optional apache2-suexec_2.2.22-13+deb7u2_i386.deb 7c35e6a8bdf6b002d563db1cea4d0671 107572 httpd extra apache2-suexec-custom_2.2.22-13+deb7u2_i386.deb 326ccf3ef95ecd714f6916e78053dc81 1438 httpd optional apache2_2.2.22-13+deb7u2_i386.deb d579f6ec67a29140c4fc4a8325c7aa66 1774030 doc optional apache2-doc_2.2.22-13+deb7u2_all.deb 5f5dd036a7d8be1a0f0476c5a3984892 114426 httpd extra apache2-prefork-dev_2.2.22-13+deb7u2_i386.deb 76458f39013c1143dba9001fc5d38a2e 115278 httpd extra apache2-threaded-dev_2.2.22-13+deb7u2_i386.deb 71a814d3fcf0790b4d69be7594ca3fb1 1634902 debug extra apache2-dbg_2.2.22-13+deb7u2_i386.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIVAwUBU4IRMcaHXzVBzv3gAQjmuQ/+ItB2Hp6WcgV0a+T9Os6IK2tJdRtyHiS2 g8FeHIST/Udb6b4kuBfH89wmEMbCjHGzP2S62ztaLgn6Z8bHHCtfvXhRsy+QwCTI 0ur9rAkB9EWHciZByzbDVcQmTxkRmAHLA0Sn8P2LkAc+32GltEbLsn7cUQYoOvxx sKkPrlwb7T4Sy1qg6CNavDSuYcAbF3VoRgvUhqbqebod3++3SGw54S4DzcyWM3d2 c/4foCprHMAJnAsETi6zw0lXaheORZuhcrSvQmFor11lrY4SLRD8n5ihup27RurG lAZxFoN6RTQF/8xTbENDzzwv/KJD9CqhscMpOJbOxR8XezIusitjPM5gJupr2csK s65IyzHeoUI0As5TDprIrWnyyofBMMCw2a3diuRTjP/JR2X/ucfMAGWUMWhjJKOP 6JaFZ1M4uC7TOsaqiSCPaxWGfeiSU/hw5kC6++vOktcKZ5XDJHzWGyZVxlD29CRk 7kSgyDmlZEn9lLvN1wtdrOWPeiku42oXVW2vqSA6amhDFfMg8aA8ws5WJawcqtDd OpXnoFBsBizD4MncQTa96tekZ/51zKonGfCXKQ1yzI4oOek5kZdg2UsTeDDFsm/6 gd9Qo/G5SD2yjvdH3VTUNR/zcX1FzCM/LoT0jjUGcOUdUuAIbBkCTlw49M7aGDSc r0TcydB3pec= =l7qM -----END PGP SIGNATURE-----