pkgsrc-Changes archive

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index][Old Index]

CVS commit: pkgsrc/www/apache24



Module Name:    pkgsrc
Committed By:   ryoon
Date:           Tue Jul 30 12:51:29 UTC 2013

Modified Files:
        pkgsrc/www/apache24: Makefile PLIST distinfo
Removed Files:
        pkgsrc/www/apache24/patches: patch-support_htdbm.c
            patch-support_htdigest.c patch-support_htpasswd.c
            patch-support_passwd__common.c patch-support_passwd__common.h

Log Message:
Update to 2.4.6

Changelog:
Security buxfixes.
    SECURITY: CVE-2013-1896 (cve.mitre.org) Sending a MERGE request against a 
URI handled by mod_dav_svn with the source href (sent as part of the request 
body as XML) pointing to a URI that is not configured for DAV will trigger a 
segfault.
    SECURITY: CVE-2013-2249 (cve.mitre.org) mod_session_dbd: Make sure that 
dirty flag is respected when saving sessions, and ensure the session ID is 
changed each time the session changes. This changes the format of the 
updatesession SQL statement. Existing configurations must be changed.

And feature enhancement and bugfixes.


To generate a diff of this commit:
cvs rdiff -u -r1.20 -r1.21 pkgsrc/www/apache24/Makefile
cvs rdiff -u -r1.10 -r1.11 pkgsrc/www/apache24/PLIST
cvs rdiff -u -r1.9 -r1.10 pkgsrc/www/apache24/distinfo
cvs rdiff -u -r1.1 -r0 pkgsrc/www/apache24/patches/patch-support_htdbm.c \
    pkgsrc/www/apache24/patches/patch-support_htdigest.c \
    pkgsrc/www/apache24/patches/patch-support_htpasswd.c \
    pkgsrc/www/apache24/patches/patch-support_passwd__common.c \
    pkgsrc/www/apache24/patches/patch-support_passwd__common.h

Please note that diffs are not public domain; they are subject to the
copyright notices on the relevant files.




Home | Main Index | Thread Index | Old Index