Format: 1.8 Date: Tue, 14 Jun 2022 09:33:28 -0300 Source: apache2 Binary: apache2 apache2-bin apache2-dev apache2-ssl-dev apache2-suexec-custom apache2-suexec-pristine apache2-utils libapache2-mod-md libapache2-mod-proxy-uwsgi Built-For-Profiles: noudeb Architecture: s390x Version: 2.4.48-3.1ubuntu3.5 Distribution: impish Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: Leonidas Da Silva Barbosa Description: apache2 - Apache HTTP Server apache2-bin - Apache HTTP Server (modules and other binary files) apache2-dev - Apache HTTP Server (development headers) apache2-ssl-dev - Apache HTTP Server (mod_ssl development headers) apache2-suexec-custom - Apache HTTP Server configurable suexec program for mod_suexec apache2-suexec-pristine - Apache HTTP Server standard suexec program for mod_suexec apache2-utils - Apache HTTP Server (utility programs for web servers) libapache2-mod-md - transitional package libapache2-mod-proxy-uwsgi - transitional package Changes: apache2 (2.4.48-3.1ubuntu3.5) impish-security; urgency=medium . * SECURITY UPDATE: HTTP Request Smuggling - debian/patches/CVE-2022-26377.patch: changing precedence between T-E and C-L in modules/proxy/mod_proxy_ajp.c. - CVE-2022-26377 * SECURITY UPDATE: Read beyond bounds - debian/patches/CVE-2022-28614.patch: handle large writes in ap_rputs. in server/util.c. - CVE-2022-28614 * SECURITY UPDATE: Read beyond bounds - debian/patches/CVE-2022-28615.patch: fix types in server/util.c. - CVE-2022-28615 * SECURITY UPDATE: Denial of service - debian/patches/CVE-2022-29404.patch: cast first in modules/lua/lua_request.c. - CVE-2022-29404 * SECURITY UPDATE: Denial of service - debian/patches/CVE-2022-30522.patch: limit mod_sed memory use in modules/filters/mod_sec.c, modules/filters/sed1.c. - CVE-2022-30522 * SECURITY UPDATE: Returning point past of the buffer - debian/patches/CVE-2022-30556.patch: use filters consitently in modules/lua/lua_request.c. - CVE-2022-30556 * SECURITY UPDATE: Bypass IP authentication - debian/patches/CVE-2022-31813.patch: to clear hop-by-hop first and fixup last in modules/proxy/proxy_util.c. - CVE-2022-31813 Checksums-Sha1: 0ff8ae885a6bf6bc3239a9754b5ede741b3042b1 3508270 apache2-bin-dbgsym_2.4.48-3.1ubuntu3.5_s390x.ddeb 53d3f8748510bf81206531ad7976b6a2eb35f93e 1266268 apache2-bin_2.4.48-3.1ubuntu3.5_s390x.deb 82ee1d9835a1f847c8f1c9f4a9ff108e4ecfee6b 187916 apache2-dev_2.4.48-3.1ubuntu3.5_s390x.deb 3986e7ee10d757ad7cbee8318f5cb07c12a10243 2980 apache2-ssl-dev_2.4.48-3.1ubuntu3.5_s390x.deb b5e24b1b8613f85be5c8137dacdb6f319d18bfde 12950 apache2-suexec-custom-dbgsym_2.4.48-3.1ubuntu3.5_s390x.ddeb 2f2697a9ca498b5f10da34cbe78dd36c04bc7db0 16410 apache2-suexec-custom_2.4.48-3.1ubuntu3.5_s390x.deb 029968c0b7e8efc790660b274d7fdd47c8677a57 11718 apache2-suexec-pristine-dbgsym_2.4.48-3.1ubuntu3.5_s390x.ddeb 309d53e9c675ba3b52890f38f6f4645f6b6eebd3 14782 apache2-suexec-pristine_2.4.48-3.1ubuntu3.5_s390x.deb 7dbcce8ca009a9d02d01eccc1eacc1f898f47a1d 118606 apache2-utils-dbgsym_2.4.48-3.1ubuntu3.5_s390x.ddeb be941ef681c741c1311c6afee6f7aaf4e0efc495 89692 apache2-utils_2.4.48-3.1ubuntu3.5_s390x.deb 57c4fa29d6b60184530c5d60791302b6e28c9f99 11876 apache2_2.4.48-3.1ubuntu3.5_s390x.buildinfo 19882956937f6e6537dd1d6750109dfbe4cae5be 97856 apache2_2.4.48-3.1ubuntu3.5_s390x.deb 7ba37281987793dd0afc99765ddcbc7e8fa02f50 808 libapache2-mod-md_2.4.48-3.1ubuntu3.5_s390x.deb 51ff0a3853e4470e49dd466e6645fc18479b28fd 992 libapache2-mod-proxy-uwsgi_2.4.48-3.1ubuntu3.5_s390x.deb Checksums-Sha256: 10d5fb7652954c578b1f804601ef2dead17d5d4eb48e12d216ed5deabb963355 3508270 apache2-bin-dbgsym_2.4.48-3.1ubuntu3.5_s390x.ddeb 19dbed13caf141cdd590bb2094098f0a20422ea52f53aef268b01aef8e36c1ce 1266268 apache2-bin_2.4.48-3.1ubuntu3.5_s390x.deb 900c5f5383b0d53de4b2b6903b11a3dbaead9e6df34ab76ed9ccae8ca376bddd 187916 apache2-dev_2.4.48-3.1ubuntu3.5_s390x.deb 1339862a8e24ed5c4b92c4b1266ec4fd0ba29480944f5049ebe1159dd1eef528 2980 apache2-ssl-dev_2.4.48-3.1ubuntu3.5_s390x.deb c07d727d1d37f02182d63e81b62be3642d7a9d193294eb33984289fdecc9a2c0 12950 apache2-suexec-custom-dbgsym_2.4.48-3.1ubuntu3.5_s390x.ddeb cee72d88ed4bf20a0588b7ca4f5a195f13c735a87d26a68903ab7f1166f4879f 16410 apache2-suexec-custom_2.4.48-3.1ubuntu3.5_s390x.deb 92540fa4bc4339841d8fe71a43ddd87f8062039882ac02bf1d8ab42097e79748 11718 apache2-suexec-pristine-dbgsym_2.4.48-3.1ubuntu3.5_s390x.ddeb 0b5b2a3218ab95304ad27c1a839ae9490d74f16b5f3ca7fffa270772f1e19a95 14782 apache2-suexec-pristine_2.4.48-3.1ubuntu3.5_s390x.deb 6a574928cda530c4d0a48c8da9e614e7b6867c5a517ed5f363d372f6ead690e7 118606 apache2-utils-dbgsym_2.4.48-3.1ubuntu3.5_s390x.ddeb 9ea010d4e6a730e6c6cdaee59c3449afd25bcd1146b2666df46614a3df9b04da 89692 apache2-utils_2.4.48-3.1ubuntu3.5_s390x.deb 7f41614d46fd85f5f6fc53ba80f5de672499038e97df300bf2969420ededc246 11876 apache2_2.4.48-3.1ubuntu3.5_s390x.buildinfo a17976af34ac5d8ebf4bb7cad7ac3bfedc90b351867415201d124cb6cd7e2370 97856 apache2_2.4.48-3.1ubuntu3.5_s390x.deb 93d670db3453b590d125edebd20e34b1461a32060dedd65a9dda7b1e26db0dca 808 libapache2-mod-md_2.4.48-3.1ubuntu3.5_s390x.deb 8b1ef9136c3e6a1c078088d07a46bbc415aed7e4b50f5038ac9f58c0617bd996 992 libapache2-mod-proxy-uwsgi_2.4.48-3.1ubuntu3.5_s390x.deb Files: 48014451389df48597df77df1bb96658 3508270 debug optional apache2-bin-dbgsym_2.4.48-3.1ubuntu3.5_s390x.ddeb c8402c9649e272585005705c81e8a2b5 1266268 httpd optional apache2-bin_2.4.48-3.1ubuntu3.5_s390x.deb bc850a0daf5ab6c11bd81cc2c9417c5d 187916 httpd optional apache2-dev_2.4.48-3.1ubuntu3.5_s390x.deb 4f2cb783f04e5166d1f45fb51328fb4b 2980 httpd optional apache2-ssl-dev_2.4.48-3.1ubuntu3.5_s390x.deb d61e8854fade9d579c10505f20ae5865 12950 debug optional apache2-suexec-custom-dbgsym_2.4.48-3.1ubuntu3.5_s390x.ddeb 5c3df2246ffa84393882c7299ec3af4a 16410 httpd optional apache2-suexec-custom_2.4.48-3.1ubuntu3.5_s390x.deb 8e75f5422e806ce1617c749553e01401 11718 debug optional apache2-suexec-pristine-dbgsym_2.4.48-3.1ubuntu3.5_s390x.ddeb b51949683d3745abec0bdaac281a5882 14782 httpd optional apache2-suexec-pristine_2.4.48-3.1ubuntu3.5_s390x.deb b61162733f9b6689ffe9dbe1c8f3a23b 118606 debug optional apache2-utils-dbgsym_2.4.48-3.1ubuntu3.5_s390x.ddeb 428dbeb42d56ca4e3c8f1ac2315c2e97 89692 httpd optional apache2-utils_2.4.48-3.1ubuntu3.5_s390x.deb a6bf6b680376e4566ed122238e57100e 11876 httpd optional apache2_2.4.48-3.1ubuntu3.5_s390x.buildinfo 02779c4f4ef97fbb4d59f66a5c6e0db4 97856 httpd optional apache2_2.4.48-3.1ubuntu3.5_s390x.deb 8723a120482008450d812ef7929d93eb 808 oldlibs optional libapache2-mod-md_2.4.48-3.1ubuntu3.5_s390x.deb 904231b1f742b4c9cc611e3541425869 992 oldlibs optional libapache2-mod-proxy-uwsgi_2.4.48-3.1ubuntu3.5_s390x.deb Original-Maintainer: Debian Apache Maintainers