-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Thu, 21 Sep 2017 20:49:06 +0200 Source: apache2 Binary: apache2.2-common apache2.2-bin apache2-mpm-worker apache2-mpm-prefork apache2-mpm-event apache2-mpm-itk apache2-utils apache2-suexec apache2-suexec-custom apache2 apache2-doc apache2-prefork-dev apache2-threaded-dev apache2-dbg Architecture: source amd64 all Version: 2.2.22-13+deb7u12 Distribution: wheezy-security Urgency: medium Maintainer: Debian Apache Maintainers <debian-apache@lists.debian.org> Changed-By: Emilio Pozuelo Monfort <pochu@debian.org> Description: apache2 - Apache HTTP Server metapackage apache2-dbg - Apache debugging symbols apache2-doc - Apache HTTP Server documentation apache2-mpm-event - Apache HTTP Server - event driven model apache2-mpm-itk - multiuser MPM for Apache 2.2 apache2-mpm-prefork - Apache HTTP Server - traditional non-threaded model apache2-mpm-worker - Apache HTTP Server - high speed threaded model apache2-prefork-dev - Apache development headers - non-threaded MPM apache2-suexec - Standard suexec program for Apache 2 mod_suexec apache2-suexec-custom - Configurable suexec program for Apache 2 mod_suexec apache2-threaded-dev - Apache development headers - threaded MPM apache2-utils - utility programs for webservers apache2.2-bin - Apache HTTP Server common binary files apache2.2-common - Apache HTTP Server common files Closes: 876109 Changes: apache2 (2.2.22-13+deb7u12) wheezy-security; urgency=medium . * Non-maintainer upload by the LTS Security team. * CVE-2017-9798: Use-after-free by limiting unregistered HTTP method (Closes: #876109) Checksums-Sha1: 382dfaeeff17aed88c9650aa57e1492ba0e92f3e 2925 apache2_2.2.22-13+deb7u12.dsc bf3bbfda967ac900348e697f26fe86b25695efe9 7200529 apache2_2.2.22.orig.tar.gz b6f948364bb29ea6332bc75d6780ab010843be4d 265647 apache2_2.2.22-13+deb7u12.debian.tar.gz 693fdafbd39a42b161e40bf1e24660e81040308c 294180 apache2.2-common_2.2.22-13+deb7u12_amd64.deb 368a74bf29b5cf37da5b2c205ba98a3ad8696c76 792722 apache2.2-bin_2.2.22-13+deb7u12_amd64.deb 8ea363ffaecbae949c3e050b39e206029bcb286b 2226 apache2-mpm-worker_2.2.22-13+deb7u12_amd64.deb 6e35d0968134bfba5f0fa7ac226550db4fb78bc7 2348 apache2-mpm-prefork_2.2.22-13+deb7u12_amd64.deb 5b06cdc7c7216d330a243de342ab2977b3c74c40 2296 apache2-mpm-event_2.2.22-13+deb7u12_amd64.deb 8024dc8093352a7a9b0b6b3a1436596e94294a28 2326 apache2-mpm-itk_2.2.22-13+deb7u12_amd64.deb 10632a5ffb89a35925698b77359d1c5cc5355e30 164466 apache2-utils_2.2.22-13+deb7u12_amd64.deb b89fa2e378fe03d4803be430d1ba2f21e7b29c82 108154 apache2-suexec_2.2.22-13+deb7u12_amd64.deb 6640003c83a4915924c1ba7cc0660835d37d7463 109668 apache2-suexec-custom_2.2.22-13+deb7u12_amd64.deb 5f245d8bc48e692c985da6a547cc81ed58834eeb 1446 apache2_2.2.22-13+deb7u12_amd64.deb f7067c9c2920de4b7f6944ec1b3b14cd6a1cbf91 1778950 apache2-doc_2.2.22-13+deb7u12_all.deb f0df8e26d794692be61b7755a634c0cc8f1569d8 115336 apache2-prefork-dev_2.2.22-13+deb7u12_amd64.deb 0bf08022dacbc022b685f460069245069e6f0c85 116162 apache2-threaded-dev_2.2.22-13+deb7u12_amd64.deb 6f9332b840bac0413b360f7c99d99977f4badae3 1732032 apache2-dbg_2.2.22-13+deb7u12_amd64.deb Checksums-Sha256: d03f4959f8b27cc81691f81304bb24fa25bac4f44776f811bd44eaa7e8a05de3 2925 apache2_2.2.22-13+deb7u12.dsc 74c1ffffefe1a502339b004ad6488fbd858eb425a05968cd67c05695dbc0fe7c 7200529 apache2_2.2.22.orig.tar.gz be85a4e56ca053b9c1913e922598cd293153925a6d20799db4ab3c1ad6a30ca2 265647 apache2_2.2.22-13+deb7u12.debian.tar.gz 3469a798fedb4eca4a3cc27e7ee247a4e959fc3806a80f62815d5f095599c548 294180 apache2.2-common_2.2.22-13+deb7u12_amd64.deb 3f3eecf9d70715eabe21302e762cdba2b7e8493e2fe2db987c61470429f07496 792722 apache2.2-bin_2.2.22-13+deb7u12_amd64.deb 1c08c07813894ff69db76c316d5119d78164f1f8e73f1bdab1dddc1dbd7bed58 2226 apache2-mpm-worker_2.2.22-13+deb7u12_amd64.deb 1acbc487c0184bb01c06f10a83c8cbbb74dc2da8c1aa5cb1ce463430f617daad 2348 apache2-mpm-prefork_2.2.22-13+deb7u12_amd64.deb 0714255cec499d4cc2e83fb5765877ee479ccc84b22b0c18ce973b317a2aa1bb 2296 apache2-mpm-event_2.2.22-13+deb7u12_amd64.deb a13d2ea31957a9fcd8126879724ce32e1363dd38248c626e20204f2b06ab1fb7 2326 apache2-mpm-itk_2.2.22-13+deb7u12_amd64.deb 5f16f1a1688c8fb5bcc9030155ca33da207b7f67d2b1cb8bf2dbe78aff8c3dac 164466 apache2-utils_2.2.22-13+deb7u12_amd64.deb 5bc4547a17c8692990413e4f75fcb8e79cce0a8e2162017723883e840b4b21f4 108154 apache2-suexec_2.2.22-13+deb7u12_amd64.deb 2027f8b46170b2c0f3a448c8eb2b16cfd87ebe22f9ccfb1bfda74a769d921e17 109668 apache2-suexec-custom_2.2.22-13+deb7u12_amd64.deb 0e3072e50ae4b5df9b88f7a6e69156a2965be510469cd5c79c12cd724973a6bd 1446 apache2_2.2.22-13+deb7u12_amd64.deb 15ba18055a908f45c166ec65e5472848ac7666338447a1aa47914c848cb26660 1778950 apache2-doc_2.2.22-13+deb7u12_all.deb a195314005eb1664edb5b5e94670d30fdac21e8b28abed5b5129be6f08c02fdc 115336 apache2-prefork-dev_2.2.22-13+deb7u12_amd64.deb 5a74de767dc5ed4b7d620667074cb11151f363969cf47d339456ee142a53fc87 116162 apache2-threaded-dev_2.2.22-13+deb7u12_amd64.deb e475bc3d97abd79da71ddfa7f6831e92c189676abf1199dd262582ddf431cbce 1732032 apache2-dbg_2.2.22-13+deb7u12_amd64.deb Files: 4d72c2add259a43e2c491c1fd123dd2a 2925 httpd optional apache2_2.2.22-13+deb7u12.dsc d77fa5af23df96a8af68ea8114fa6ce1 7200529 httpd optional apache2_2.2.22.orig.tar.gz 4501a484c88965a6916dd1c8950e9b78 265647 httpd optional apache2_2.2.22-13+deb7u12.debian.tar.gz df387a63176525a015a651f4af2d8169 294180 httpd optional apache2.2-common_2.2.22-13+deb7u12_amd64.deb 9ebcb7ac948f4e518dce9d41c5143c50 792722 httpd optional apache2.2-bin_2.2.22-13+deb7u12_amd64.deb 9c65ac3907ca047c0a00046dbfb5753f 2226 httpd optional apache2-mpm-worker_2.2.22-13+deb7u12_amd64.deb 031c8abb5b1e9d215f14a5c9571afe43 2348 httpd optional apache2-mpm-prefork_2.2.22-13+deb7u12_amd64.deb 07394f808940cc4ce89c424f11b7b6c8 2296 httpd optional apache2-mpm-event_2.2.22-13+deb7u12_amd64.deb 67a66378ab08cbae0ba05303b962ecbd 2326 httpd extra apache2-mpm-itk_2.2.22-13+deb7u12_amd64.deb 00f18269470769b61413dba2f95f7675 164466 httpd optional apache2-utils_2.2.22-13+deb7u12_amd64.deb ad6b6ce6497cf1a3b92d2930268102d5 108154 httpd optional apache2-suexec_2.2.22-13+deb7u12_amd64.deb b37391db8acf7838f9cfbfb145fafd77 109668 httpd extra apache2-suexec-custom_2.2.22-13+deb7u12_amd64.deb 6a20a9dcefdcbf1ef7f38b8fc49ad9e0 1446 httpd optional apache2_2.2.22-13+deb7u12_amd64.deb 19c7daacfe9009b3c1bf62fe658d548c 1778950 doc optional apache2-doc_2.2.22-13+deb7u12_all.deb 1028b590a7fa0c0e921d7b018a4060b9 115336 httpd extra apache2-prefork-dev_2.2.22-13+deb7u12_amd64.deb 9faa7e98999e52b706cd89301fe17c32 116162 httpd extra apache2-threaded-dev_2.2.22-13+deb7u12_amd64.deb 4389ba2eec0e76a1edf49f26f1306e9e 1732032 debug extra apache2-dbg_2.2.22-13+deb7u12_amd64.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCAAdFiEEcJymx+vmJZxd92Q+nUbEiOQ2gwIFAlnEGA8ACgkQnUbEiOQ2 gwIxyRAAvFkEsRw3tSwrkU8IpHYUMmL9KhqGc85y2GCBA6s7X8Fx5tD3caF/uKi5 NQGcc8oHNNCWqCjA29mQhLxwZbFSv9hbf6VBnwgrcJEXWv1GTpcVkWlksY1Vv186 SbROknacGqVShDqBp1X2PUY4T2ksaIr9o4AuH+oJqkUt4hSw1O/aJxCdhOXevt4o tURM63H+P2xYAwd5VNslxKSEEbdQhNRii4hx87f3QOrFL5JRSZ+Rx41IuAA71Udo Z3v7l6+bWyiNY+znkhxu7q8enC3Z1amj6r8g3ZII+MQrlDwivWulleYDHvdwn0rt VG05vOiNlyvK6qWrjS31YpY6OerzXAKbpSFaqA9kcJ74KosORPLb/l9fOt9pz6eZ CXEUKeBk7VqjG92WSICZDBe7WsUDK4hnfEF0Pxfi7jR5GM+ErpThzV+2SEnK5ZaS sURCfpOFYQrQeMTcM4BDZ0xXqmXA236bLP4O74S9AkM2Ll5O3R6dor39gIM91wj8 8ldASbvUyvmyWlbPyTYunrM8gzCCqSxBqEn6UgcyQ9MbnKm0vYKuTEVoaupsqGch uAet944AcwxC1pyMjLZ5AykW3oLivVTOI4P90hZ3mOYjVwAj1K7DJEhPbX00QO1t 2evKq+i85oCuKY2avrRjPomickhCQvkGRDtuWkT/U26yb2n0p4c= =LeT6 -----END PGP SIGNATURE-----