Changelog for
apache-devel-1.3.29-1.i586.rpm :
Tue Oct 28 13:00:00 2003 PLD Team
All persons listed below can be reached at AATTpld.org.pl
$Log: apache.spec,v $
Revision 1.207.2.7 2003/10/28 03:02:41 kloczek
- updated %files: added ja documentation for mod_rewrite.
Revision 1.207.2.6 2003/10/28 02:47:46 kloczek
- updated to 1.3.29,
- SECURITY FIX: CAN-2003-0542 (cve.mitre.org)
Fix buffer overflows in mod_alias and mod_rewrite which occurred if
one configured a regular expression with more than 9 captures.
Revision 1.207.2.5 2003/09/23 04:25:13 kloczek
- release 2,
- SECURITY FIX: CAN-2003-0020
Apache does not filter terminal escape sequences from its error logs, which
could make it easier for attackers to insert those sequences into terminal
emulators containing vulnerabilities related to escape sequences.
(based on patch from RH).
Revision 1.207.2.4 2003/08/11 08:36:07 kloczek
- updated to 1.3.18,
- SECURITY FIX: CAN-2003-0460
The rotatelogs program on Apache does not properly ignore certain control
characters that are received over the pipe, which could allow remote
attackers to cause a denial of service,
- removed outdated security_htdigest_bufferoverflow patch (integrated in
current version),
- updated %files.
Revision 1.207.2.3 2003/05/25 13:44:13 misiek
- increase servers limit to 2048
Revision 1.207.2.2 2003/05/09 11:41:28 qboosh
- merged some cleanups from apache1.spec
Revision 1.207.2.1 2003/04/23 06:05:01 kloczek
- rerlase 4,
- security fix: merge security_htdigest_bufferoverflow Debian patch:
use strncpy() instad strcpy() in htdigest: fix buffer overflow in htdigest
(thans to Helge Kreutzmann for point this;
closed http://bugs.pld.org.pl/?bug=464).