sync apache2 (2.2.4-2) debian sid main

Bug #126641 reported by Fernando Ribeiro on 2007-07-17
12
Affects Status Importance Assigned to Milestone
Apache2 Web Server
Invalid
Undecided
Unassigned
apache2 (Debian)
Fix Released
Unknown
apache2 (Ubuntu)
Wishlist
Ubuntu Server

Bug Description

I made an update based on the Ubuntu Server Team meeting.

New watch file
Fixed unreachable host.

CVE References

Fernando Ribeiro (ipsec) wrote :

debdiff candidate

Changed in apache2:
assignee: nobody → fernando
status: New → Confirmed
assignee: fernando → ubuntu-server
Fernando Ribeiro (ipsec) on 2007-07-17
Changed in apache2:
status: New → Unknown
Changed in apache2:
status: Unknown → New
status: Unknown → New
Mathias Gug (mathiaz) wrote :

It seems that you've used the wrong order of dsc files when generating the debdiff.

Try to use :

debdiff orig.dsc modified.dsc

Mathias Gug (mathiaz) wrote :

This bug doesn't affect upstream (the apache2 project). It's only relevant to debian and ubuntu.

Changed in apache2:
status: New → Invalid
importance: Undecided → Wishlist
status: Confirmed → Triaged
Changed in apache2:
status: New → Fix Committed
Changed in apache2:
status: Fix Committed → Fix Released
Fernando Ribeiro (ipsec) wrote :

Already fixed on debian 2.2.4-2.

Signing to ubuntu-main-sponsors team to sync with debian.

XtremeBain (xtremebain) wrote :

Michael Bienia requested a complete sync request for this package in bug 127537. I have marked it as a duplicate and included his notes in this comment.

Binary package hint: apache2

Please sync request apache2 (2.2.4-2) from Debian unstable (main).

The current package has no Ubuntu changes.

Thanks.

Changelog:

apache2 (2.2.4-2) unstable; urgency=low

  * Modularize config: Move module specific configuration from apache2.conf
    to mods-available/*conf (Closes: #338472)
  * Remove the NO_START kludge. Now you have to use rc*.d symlinks to disable
    apache2. (Closes: #408462, #275561)
  * Create run and lock directores in apache2ctl to make it work on fresh
    installations before the first call of the init script. Together with
    the previous item, this closes: #418499
  * Disable AddDefaultCharset again (Closes: #397886)
  * Make ports.conf, conf.d/charset, and /etc/default/apache2 conffiles
    managed by dpkg
  * Listen on port 443 by default if mod_ssl is loaded (Closes: #404598)
  * Add logic to start htcacheclean as daemon or cronjob. The configuration
    is in /etc/default/apache2
  * Fix security issues:
    - CVE-2007-3304: prevent parent process to send SIGUSR1 to arbitrary
      processes
    - CVE-2006-5752: XSS in mod_status
  * Add init.d dependency info from insserv overrides to /etc/init.d/apache2
  * Replace apachectl with apache2ctl in docs (Closes: #164493)
  * Add usage message to apache2ctl (Closes: #359008)
  * Make -dev packages priority extra
  * Add secure example cipher/protocol configuration to ssl.conf
  * Update watch file (Closes: #433552)
  * Bump dh_compat to 5
  * Add new package apache2-dbg with debugging symbols
  * Fix mod_cache returning 304 instead of 200 on HEAD requests

 -- Stefan Fritsch <email address hidden> Tue, 03 Jul 2007 21:23:40 +0200

Michael Bienia (geser) wrote :

[17:54:04] geser | can an ubuntu-main-sponsor look at bug #126641 and ACK it (if it's OK)?
[17:54:06] ubotu | Launchpad bug 126641 in apache2 "sync apache2 (2.2.4-2) debian sid main" [Unknown,Fix released]
                          https://launchpad.net/bugs/126641
[17:54:33] pitti | geser: oh, that's just one new debian revision, should be easy
[17:54:45] pitti | geser: I'll have a look tomorrow at my archive day; please subscribe u-archive
[17:55:30] geser | done

Colin Watson (cjwatson) wrote :

[Updating] apache2 (2.2.4-1 [Ubuntu] < 2.2.4-2 [Debian])
 * Trying to add apache2...
  - <apache2_2.2.4-2.diff.gz: downloading from http://ftp.us.debian.org/debian/>
  - <apache2_2.2.4-2.dsc: downloading from http://ftp.us.debian.org/debian/>
  - <apache2_2.2.4.orig.tar.gz: already in distro - downloading from librarian>
I: apache2 [main] -> apache2_2.2.4-1 [main].
I: apache2 [main] -> apache2-mpm-event_2.2.4-1 [main].
I: apache2 [main] -> apache2-threaded-dev_2.2.4-1 [main].
I: apache2 [main] -> apache2-utils_2.2.4-1 [main].
I: apache2 [main] -> apache2-mpm-prefork_2.2.4-1 [main].
I: apache2 [main] -> apache2-src_2.2.4-1 [main].
I: apache2 [main] -> apache2.2-common_2.2.4-1 [main].
I: apache2 [main] -> apache2-doc_2.2.4-1 [main].
I: apache2 [main] -> apache2-mpm-worker_2.2.4-1 [main].
I: apache2 [main] -> apache2-prefork-dev_2.2.4-1 [main].
I: apache2 [main] -> apache2-mpm-perchild_2.2.4-1 [main].

Changed in apache2:
status: Triaged → Fix Released
To post a comment you must log in.
This report contains Public information  Edit
Everyone can see this information.

Duplicates of this bug

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.