-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Sat, 01 Aug 2015 22:42:35 +0200 Source: apache2 Binary: apache2 apache2-data apache2-bin apache2-mpm-worker apache2-mpm-prefork apache2-mpm-event apache2-mpm-itk apache2.2-bin apache2.2-common libapache2-mod-proxy-html libapache2-mod-macro apache2-utils apache2-suexec apache2-suexec-pristine apache2-suexec-custom apache2-doc apache2-dev apache2-dbg Architecture: source amd64 all Version: 2.4.10-10+deb8u1 Distribution: jessie-security Urgency: medium Maintainer: Debian Apache Maintainers <debian-apache@lists.debian.org> Changed-By: Stefan Fritsch <sf@debian.org> Description: apache2 - Apache HTTP Server apache2-bin - Apache HTTP Server (modules and other binary files) apache2-data - Apache HTTP Server (common files) apache2-dbg - Apache debugging symbols apache2-dev - Apache HTTP Server (development headers) apache2-doc - Apache HTTP Server (on-site documentation) apache2-mpm-event - transitional event MPM package for apache2 apache2-mpm-itk - transitional itk MPM package for apache2 apache2-mpm-prefork - transitional prefork MPM package for apache2 apache2-mpm-worker - transitional worker MPM package for apache2 apache2-suexec - transitional package for apache2-suexec-pristine apache2-suexec-custom - Apache HTTP Server configurable suexec program for mod_suexec apache2-suexec-pristine - Apache HTTP Server standard suexec program for mod_suexec apache2-utils - Apache HTTP Server (utility programs for web servers) apache2.2-bin - Transitional package for apache2-bin apache2.2-common - Transitional package for apache2 libapache2-mod-macro - Transitional package for apache2-bin libapache2-mod-proxy-html - Transitional package for apache2-bin Changes: apache2 (2.4.10-10+deb8u1) jessie-security; urgency=medium . * CVE-2015-3183: Fix chunk header parsing defect. * CVE-2015-3185: ap_some_auth_required() broken in apache 2.4 in an unfixable way. Add a new replacement API ap_some_authn_required() and ap_force_authn hook. Checksums-Sha1: be338450c393a6b2c9b0a1c49e56750de3758ae6 3255 apache2_2.4.10-10+deb8u1.dsc 00f5c3f8274139bd6160eda2cf514fa9b74549e5 5031834 apache2_2.4.10.orig.tar.bz2 ec24b18b903c1af6e834482ef97a913495f39203 533628 apache2_2.4.10-10+deb8u1.debian.tar.xz edd6b3184cac08bb9bfdf15cc6895870890fa6c2 1156 libapache2-mod-proxy-html_2.4.10-10+deb8u1_amd64.deb c17b9c365202a68978a47e32c0bcfe5b94e61bdf 1146 libapache2-mod-macro_2.4.10-10+deb8u1_amd64.deb 27906a59634a9cb7edc98e16aacdec1198f80487 205030 apache2_2.4.10-10+deb8u1_amd64.deb e1fa9d65e95fab0f26117b031f8e23b6c8216296 162732 apache2-data_2.4.10-10+deb8u1_all.deb 0e061e31fc1034543f874df2c645ebf8952fe132 1031334 apache2-bin_2.4.10-10+deb8u1_amd64.deb 872133fae44b301dc6df64bfe17a4e668149ede5 1512 apache2-mpm-worker_2.4.10-10+deb8u1_amd64.deb f3fb3041458fec1d88181d136d65fc9636a6776a 1516 apache2-mpm-prefork_2.4.10-10+deb8u1_amd64.deb b091633e885457f104b5fb53061472816443afa8 1520 apache2-mpm-event_2.4.10-10+deb8u1_amd64.deb f194592c0652f3f56bd3c4d70306fc72ccdfe6b8 1514 apache2-mpm-itk_2.4.10-10+deb8u1_amd64.deb 57f5dc19b88a818210a556eb3c872ff3dd731d3b 1702 apache2.2-bin_2.4.10-10+deb8u1_amd64.deb 982f42dd471664cf84713f74347413416b147706 123990 apache2.2-common_2.4.10-10+deb8u1_amd64.deb 5fa40a12357d7f2e8d5e2901d61680fe6f78df55 194194 apache2-utils_2.4.10-10+deb8u1_amd64.deb d1587e9396a50a916ad0952c695a295edc675aff 1660 apache2-suexec_2.4.10-10+deb8u1_amd64.deb d5d93c19350f324117783ebc1e1c5d6826be92f7 129158 apache2-suexec-pristine_2.4.10-10+deb8u1_amd64.deb f8c951a2ea3e4ba41bdd6e1008ea46ab6d9ca4b8 130682 apache2-suexec-custom_2.4.10-10+deb8u1_amd64.deb 59ac325027126b324b9b50651e0577e729e0a88f 2725458 apache2-doc_2.4.10-10+deb8u1_all.deb 0b25ecff1a8b5f487bd40e1106e5eb48f8a4f156 280418 apache2-dev_2.4.10-10+deb8u1_amd64.deb ebdb746040118e7b02a1da8039369c5701ae583d 1704390 apache2-dbg_2.4.10-10+deb8u1_amd64.deb Checksums-Sha256: 8122cda79c79419aed38b1efbbb80c18d62efeb224ccc61faa572a21fd1eb7fa 3255 apache2_2.4.10-10+deb8u1.dsc 176c4dac1a745f07b7b91e7f4fd48f9c48049fa6f088efe758d61d9738669c6a 5031834 apache2_2.4.10.orig.tar.bz2 2902a56b88ab736dd2f523a6d7a454304a547e631619a142e3549887c20a1b46 533628 apache2_2.4.10-10+deb8u1.debian.tar.xz 7becfaef7d6d581acd89271a5780e056ad271e2a14ecdc0535b88b0b2ceb2649 1156 libapache2-mod-proxy-html_2.4.10-10+deb8u1_amd64.deb 91f5c69044dcb8afbc36a0f4e877754dae2a0f5c466d5a97416d7b2a1db2864f 1146 libapache2-mod-macro_2.4.10-10+deb8u1_amd64.deb 5c98c55ac972cb1ce056c6902be5ce74b7f1afe9d106899d76754d6b5b21495e 205030 apache2_2.4.10-10+deb8u1_amd64.deb 3c83edaa639cfb59a0851095bb105009061c3788a0d34e8e411803a6b96eafe6 162732 apache2-data_2.4.10-10+deb8u1_all.deb 1d8837be0c5ea3c47bd97ad82785e85d885b45bc7cccf05d6bfaae0bc8d67445 1031334 apache2-bin_2.4.10-10+deb8u1_amd64.deb 8396fe72a00b9fa738d2f8a86af03688d6c9c5604544772798b4c26e6f48f491 1512 apache2-mpm-worker_2.4.10-10+deb8u1_amd64.deb 7148e2a6df126cc476924ed24d20ae338e4208392ac6408a977fd62da5adc140 1516 apache2-mpm-prefork_2.4.10-10+deb8u1_amd64.deb 1fdcbd5ce8e5d919cd91e957461879da5dc2a56944e4870f2a6e29f14882ecce 1520 apache2-mpm-event_2.4.10-10+deb8u1_amd64.deb c67e06e7dd98805f66e615ca81f24989732ec4f9f019e03fc6a35cb4a7a6c4a1 1514 apache2-mpm-itk_2.4.10-10+deb8u1_amd64.deb 890e7ef229ff8c39fa4b0c11187b9de276b71d66ad66350aab717a240c8c4393 1702 apache2.2-bin_2.4.10-10+deb8u1_amd64.deb a23c8a3faeda27d1e3d018e293ac068ec819ed7470d70dcfbf044d141877d3da 123990 apache2.2-common_2.4.10-10+deb8u1_amd64.deb 7ec1f69ce92c6bb31b183aba2fbdf7e3fd5fa5077d68051ace27921c1e31653c 194194 apache2-utils_2.4.10-10+deb8u1_amd64.deb cf77daafa72a3e6697a6e28e0f41a05e2ae1ad38bd4f0a38745b5037a0bb1cba 1660 apache2-suexec_2.4.10-10+deb8u1_amd64.deb a2cfe04671d6a86bb606bf8121e3ce12652441b673a35acf3018e3de5d431cf7 129158 apache2-suexec-pristine_2.4.10-10+deb8u1_amd64.deb f6e8a80e1f5da0d10b2aadf9dd6a492324b6e1350da23f231eab32df99c889be 130682 apache2-suexec-custom_2.4.10-10+deb8u1_amd64.deb b54bf8aa5c56998ad263a08d08894f4c15ebea70c85ec9dbab4acbad6bea0e48 2725458 apache2-doc_2.4.10-10+deb8u1_all.deb 39e8276d8d778273507dbfffcac5caf7233f9698ffd0cf6df0a3786d6010ef84 280418 apache2-dev_2.4.10-10+deb8u1_amd64.deb b1fa7e7cc213285cbe9f66c6cf97e9b92b2c26f9909cc6e8011cf604f49475c9 1704390 apache2-dbg_2.4.10-10+deb8u1_amd64.deb Files: b56c5179862152b6ea1709fc44d88221 3255 httpd optional apache2_2.4.10-10+deb8u1.dsc 44543dff14a4ebc1e9e2d86780507156 5031834 httpd optional apache2_2.4.10.orig.tar.bz2 920d4aebf6c4a7a41cc842d794e7e8cf 533628 httpd optional apache2_2.4.10-10+deb8u1.debian.tar.xz 94242f91dc1b33277e019ba9c5a25002 1156 oldlibs extra libapache2-mod-proxy-html_2.4.10-10+deb8u1_amd64.deb d7b2207047d6b81e171a5197d7dbb45f 1146 oldlibs extra libapache2-mod-macro_2.4.10-10+deb8u1_amd64.deb dcf1dcc617f653b6d038afe7f9342487 205030 httpd optional apache2_2.4.10-10+deb8u1_amd64.deb 14f7f4699ff71a1383eae8d03b618d51 162732 httpd optional apache2-data_2.4.10-10+deb8u1_all.deb b00eff1eaf102d0d7629eb61864d686b 1031334 httpd optional apache2-bin_2.4.10-10+deb8u1_amd64.deb 30cf7b88dfca5a6f7312105d9cd8cadf 1512 oldlibs extra apache2-mpm-worker_2.4.10-10+deb8u1_amd64.deb 29a9061e2d56e177f9ae378a3c4e2e9c 1516 oldlibs extra apache2-mpm-prefork_2.4.10-10+deb8u1_amd64.deb ca1c0b7e4a030ac0f8d07bef12e5f83e 1520 oldlibs extra apache2-mpm-event_2.4.10-10+deb8u1_amd64.deb 4f8a6e6e695519f5bb62cbe9e9614ed0 1514 oldlibs extra apache2-mpm-itk_2.4.10-10+deb8u1_amd64.deb 60d9756143d75dbea747d78f3a409fe9 1702 oldlibs extra apache2.2-bin_2.4.10-10+deb8u1_amd64.deb dcf4f32031d87f4f224ef52d9abb1500 123990 oldlibs extra apache2.2-common_2.4.10-10+deb8u1_amd64.deb 95d20e8a1985baad8be624d17c20e689 194194 httpd optional apache2-utils_2.4.10-10+deb8u1_amd64.deb f61f2e2da116e863e77d96ee065f9f10 1660 oldlibs extra apache2-suexec_2.4.10-10+deb8u1_amd64.deb 1c383e679e5dc95106cd8ba6ff863b23 129158 httpd optional apache2-suexec-pristine_2.4.10-10+deb8u1_amd64.deb d7f32c6c8567891ab8ab9010d443de0a 130682 httpd extra apache2-suexec-custom_2.4.10-10+deb8u1_amd64.deb 5956cc8725941ff8552f95b6e01befd3 2725458 doc optional apache2-doc_2.4.10-10+deb8u1_all.deb 7aa21dcdb110204a96434377fe01fbe9 280418 httpd optional apache2-dev_2.4.10-10+deb8u1_amd64.deb dca34af783688be188961ef00396dcf0 1704390 debug extra apache2-dbg_2.4.10-10+deb8u1_amd64.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIVAwUBVb01PMaHXzVBzv3gAQjqtw//eYJ4ZID5b5uPyuiS9n/GVb5cwRznwDz5 JLKSiMmTlx0HtjcbOE4JfXVNt03p2CDHunoV75lOh+XAcwjUE+bN+1SEmxmX4p2k 6ettFm7bn28VGFJ2G4F90qIsiqnEGSGcnohLkKm/MdtTliOsquZrFnVmTrhCf9po BfOjBgxsHGTBR3pwnPKWxBsS4Xn/avXqwEbeY60sq5nctaBYGjxxgwSsCNNeVJwM b3gPlQnd9MiGweKhQgRRS2445ozwuE5iqneXE3Mq3hNKgfeiVUdJx9f8bp+53mcx kN1unb6XW7gQZT/YTuzsG82nOO53QBu6R9yEjaMw2klat+vDTsp40yjeADxIW5ms PclOaGdsYKt34IBXiZLRkI5xyYxzwsKKD9+MX/BVskzPRlg36ozNLNjr2CejPSG1 FLxEW2U00vbLd8M8WFAj/IOyog5dGKRn3nJ6qaq2DxGH/H7zY76li9FlEf+ja+q+ vzVZpryHUDpXc7FZqcha7HjlnlA1ny9K94PDhQbVNc30SP9YvI/DTrun+n2MPeHR DPqc6omxOg/abzf7J8Z/+WxI/UgN62gjY+BSCZt66xsmSGe5NVxC9T1a+d9uCNtL T7XHBWdUcv1doRsAAPMKoJ0tydH/2GRoNHLFVeAuiaIZSC8JZXIXl1T73Dsv3N72 TFmV9XOzvfw= =l0D4 -----END PGP SIGNATURE-----