Public bug reported:

Binary package hint: apache2

 apache2  (2.2.11-4) unstable; urgency=low

   [ Stefan Fritsch ]
   * Disable TRACE method by default (closes: #492130).
   * Compress some more mime types with mod_deflate by default. This may cause
     problems with MSIE 6, but that browser should now be considered obsolete.
     Closes: #397526, #521209
   * Various backports from upstream svn branches/2.2.x:
     - CVE-2009-1191: mod_proxy_ajp: Avoid delivering content from a previous
       request which failed to send a request body
     - Fix FollowSymlinks / SymlinksIfOwnerMatch ignored with
       server-side-includes PR 45959 (closes: #524474)
     - Fix mod_rewrite "B" flag breakage PR 45529 (closes: #524268)
     - Fix mod_deflate etag handling PR 45023 (LP: #358314)
     - Fix mod_ldap segfault if LDAP initialization failed PR 45994
   * Allow apache2-mpm-itk as alternate dependency in apache2 meta package
     (closes: #527225).
   * Fix some misuse of command substitution in the init script. Thanks to
     Jari Aalto for the patch. (Closes: #523398)
   * Extend the gnome-vfs DAV workaround to gvfs (closes: #522845).
   * Add more info to check_forensic man page (closes: #528424).
   * Make "apache2ctl help" point to help on apache2 args (closes: #528425).
   * Lintian warnings:
     - fix spelling error in apache2-utils description
     - tweak debian/copyright to make lintian not complain about pointers to GPL
     - bump standards-version (no changes)
 
   [ Peter Samuelson ]
   * Adjust sections to match recent ftpmaster overrides.

 -- Stefan Fritsch <s...@debian.org>  Tue, 19 May 2009 22:55:27 +0200

** Affects: apache2 (Ubuntu)
     Importance: Undecided
     Assignee: Bhavani Shankar (bhavi)
         Status: In Progress

** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2009-1191

** Changed in: apache2 (Ubuntu)
       Status: New => In Progress

** Changed in: apache2 (Ubuntu)
     Assignee: (unassigned) => Bhavani Shankar (bhavi)

-- 
Please merge apache2((2.2.11-4)(main) from debian unstable(main)
https://bugs.launchpad.net/bugs/379061
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to apache2 in ubuntu.

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs

Reply via email to