Format: 1.8 Date: Mon, 26 Jun 2017 07:50:10 -0400 Source: apache2 Binary: apache2 apache2-data apache2-bin apache2-utils apache2-suexec-pristine apache2-suexec-custom apache2-doc apache2-dev apache2-ssl-dev apache2-dbg Architecture: s390x Version: 2.4.25-3ubuntu2.1 Distribution: zesty Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: Marc Deslauriers Description: apache2 - Apache HTTP Server apache2-bin - Apache HTTP Server (modules and other binary files) apache2-data - Apache HTTP Server (common files) apache2-dbg - Apache debugging symbols apache2-dev - Apache HTTP Server (development headers) apache2-doc - Apache HTTP Server (on-site documentation) apache2-ssl-dev - Apache HTTP Server (mod_ssl development headers) apache2-suexec-custom - Apache HTTP Server configurable suexec program for mod_suexec apache2-suexec-pristine - Apache HTTP Server standard suexec program for mod_suexec apache2-utils - Apache HTTP Server (utility programs for web servers) Changes: apache2 (2.4.25-3ubuntu2.1) zesty-security; urgency=medium . * SECURITY UPDATE: authentication bypass in ap_get_basic_auth_pw() - debian/patches/CVE-2017-3167.patch: deprecate and replace ap_get_basic_auth_pw in include/ap_mmn.h, include/http_protocol.h, server/protocol.c, server/request.c. - CVE-2017-3167 * SECURITY UPDATE: NULL pointer deref in ap_hook_process_connection() - debian/patches/CVE-2017-3169.patch: fix ctx passed to ssl_io_filter_error() in modules/ssl/ssl_engine_io.c. - CVE-2017-3169 * SECURITY UPDATE: denial of service and possible incorrect value return in HTTP strict parsing changes - debian/patches/CVE-2017-7668.patch: short-circuit on NULL in server/util.c. - CVE-2017-7668 * SECURITY UPDATE: mod_mime DoS via crafted Content-Type response header - debian/patches/CVE-2017-7679.patch: fix quoted pair scanning in modules/http/mod_mime.c. - CVE-2017-7679 Checksums-Sha1: 49f04e8467c5530e1c57a9a16390ca2de473cc34 994 apache2-bin-dbgsym_2.4.25-3ubuntu2.1_s390x.ddeb 4a531b40f50aaea10a54d06e0ac2869b0279fbb0 882260 apache2-bin_2.4.25-3ubuntu2.1_s390x.deb 292e7d63f985372b64f2ac1e8f4185d5cab3f70e 3716188 apache2-dbg_2.4.25-3ubuntu2.1_s390x.deb bbd74166cc7bb40908ea32432cb2ecd15ab2dee2 978 apache2-dbgsym_2.4.25-3ubuntu2.1_s390x.ddeb 021972132dbb369615a9d404e0d18e92d9452977 1114 apache2-dev-dbgsym_2.4.25-3ubuntu2.1_s390x.ddeb 0a70e7098b694691387bc19bdec90ae835ae6c03 176632 apache2-dev_2.4.25-3ubuntu2.1_s390x.deb df7ed33560c12658ed15a9f1df02922035ee8894 990 apache2-ssl-dev-dbgsym_2.4.25-3ubuntu2.1_s390x.ddeb 080c84f50f18bbc06019a39b4c17fc833687a771 2300 apache2-ssl-dev_2.4.25-3ubuntu2.1_s390x.deb 633311837a374143b1c4cee9c842564541352f70 982 apache2-suexec-custom-dbgsym_2.4.25-3ubuntu2.1_s390x.ddeb e14bbccef370cb124c99d04795401b8ed6d89781 15102 apache2-suexec-custom_2.4.25-3ubuntu2.1_s390x.deb 4d32c2f2f5a108604d47fb0b9680ffcd7657e89d 926 apache2-suexec-pristine-dbgsym_2.4.25-3ubuntu2.1_s390x.ddeb 9ee1c1653d91f3a3a589bd02047036399184f8e5 13540 apache2-suexec-pristine_2.4.25-3ubuntu2.1_s390x.deb 34f3feda203b795cb56f5646c44c2629d1c13296 1198 apache2-utils-dbgsym_2.4.25-3ubuntu2.1_s390x.ddeb dab9216652f033c4869bdc0c10f53f756b0950a5 82252 apache2-utils_2.4.25-3ubuntu2.1_s390x.deb 95c050b657a178bfe375b817f7c75924af5729a3 95854 apache2_2.4.25-3ubuntu2.1_s390x.deb Checksums-Sha256: fe1bf55c7facdd4988bb0c1c1af3dca24e3f36be0a6b6ba9bb0df876f34e8cd7 994 apache2-bin-dbgsym_2.4.25-3ubuntu2.1_s390x.ddeb 5c97dad97a55c38a37c586c8276e11c19396914dcf893a2b9caf352561558bc3 882260 apache2-bin_2.4.25-3ubuntu2.1_s390x.deb 6aa0cc6f43b0d4b6ab5b7a369701d7229aed5e827801d23d21402f39ab73bdc2 3716188 apache2-dbg_2.4.25-3ubuntu2.1_s390x.deb 701030653357e50e251f8335a07c462b20094de33c2398a224571bf697ec1621 978 apache2-dbgsym_2.4.25-3ubuntu2.1_s390x.ddeb b7efda3ea147cff6b6796617fb730d26f04157ad3ea0fc1a47cf75e16eca373c 1114 apache2-dev-dbgsym_2.4.25-3ubuntu2.1_s390x.ddeb 596ba831aee0669fa33b3cdaebe9b141275ea19ead80cc4bb9a2a093091c9897 176632 apache2-dev_2.4.25-3ubuntu2.1_s390x.deb fd6771aa8cea9a1cfb594a7292847b236dee87b63dba18cbe44854502e03de43 990 apache2-ssl-dev-dbgsym_2.4.25-3ubuntu2.1_s390x.ddeb 6dccf0dac32eb9cef74b1c740c07d19635f8bebd53b6b85d829987d2e6b06042 2300 apache2-ssl-dev_2.4.25-3ubuntu2.1_s390x.deb 14c805faf1e1ffaae16251aacf9307f8ab63f560a7ac8b4a9096103bb72fdd87 982 apache2-suexec-custom-dbgsym_2.4.25-3ubuntu2.1_s390x.ddeb 50034b0bfab2ce37e01d338adf50c0aab0baac0f65b0009981938655a836062a 15102 apache2-suexec-custom_2.4.25-3ubuntu2.1_s390x.deb e60649322c5e8d074eab6601f56e620aaa01159d59dd3988bcadd91963914b78 926 apache2-suexec-pristine-dbgsym_2.4.25-3ubuntu2.1_s390x.ddeb b58b5b956554abeb2ec01cfc7672f86dd1c4e9b6f3cef57c50d6d554e6b0b387 13540 apache2-suexec-pristine_2.4.25-3ubuntu2.1_s390x.deb c845f7f2abbef2afaec86d155014f82de9a643affda0c7fc2d215357200f8424 1198 apache2-utils-dbgsym_2.4.25-3ubuntu2.1_s390x.ddeb bea54669b1031e4479fa4a443ba931b947fd55f7d22c254122e44d9c46677c2f 82252 apache2-utils_2.4.25-3ubuntu2.1_s390x.deb a3ee6e1b2130f2fd0f3f23392d92e29b5de4138c4293f144789bf41273dc5168 95854 apache2_2.4.25-3ubuntu2.1_s390x.deb Files: f7197480afd75c074a5540d5ae071c9f 994 httpd extra apache2-bin-dbgsym_2.4.25-3ubuntu2.1_s390x.ddeb 9002100d45a9a7e011223f20a26532f1 882260 httpd optional apache2-bin_2.4.25-3ubuntu2.1_s390x.deb 0e3eabffa9a730e1fd012d0d0f3ddeba 3716188 debug extra apache2-dbg_2.4.25-3ubuntu2.1_s390x.deb 42507d6d719c3b69abf07b239a7c1760 978 httpd extra apache2-dbgsym_2.4.25-3ubuntu2.1_s390x.ddeb 77bcb97aca477f6515a2b41fc2686dab 1114 httpd extra apache2-dev-dbgsym_2.4.25-3ubuntu2.1_s390x.ddeb 6205f9a855507824aaa79a8a447029b7 176632 httpd optional apache2-dev_2.4.25-3ubuntu2.1_s390x.deb 27b32bca7dbf7dd457aa2d34d09a1b18 990 httpd extra apache2-ssl-dev-dbgsym_2.4.25-3ubuntu2.1_s390x.ddeb 8a9c296237dc70609ce9b616e94a37fb 2300 httpd optional apache2-ssl-dev_2.4.25-3ubuntu2.1_s390x.deb 408f9dc2ded989e8133d302df979adf6 982 httpd extra apache2-suexec-custom-dbgsym_2.4.25-3ubuntu2.1_s390x.ddeb 2943d6425843623341b5d0d93d364329 15102 httpd extra apache2-suexec-custom_2.4.25-3ubuntu2.1_s390x.deb 56c853e1b9310e65c97f2c01f69f8f3f 926 httpd extra apache2-suexec-pristine-dbgsym_2.4.25-3ubuntu2.1_s390x.ddeb fc44f5912f96c77c791ac9d55d629993 13540 httpd optional apache2-suexec-pristine_2.4.25-3ubuntu2.1_s390x.deb da1345f78b53253981cdff3f99167588 1198 httpd extra apache2-utils-dbgsym_2.4.25-3ubuntu2.1_s390x.ddeb 79265771020d5b4bbfe3e5e1e4627996 82252 httpd optional apache2-utils_2.4.25-3ubuntu2.1_s390x.deb 8c923db9c4f0e8eca1f9bd88ddc06427 95854 httpd optional apache2_2.4.25-3ubuntu2.1_s390x.deb Original-Maintainer: Debian Apache Maintainers