Package: libapache2-mpm-itk
Version: 2.4.7-02-1.1
Severity: grave

This is a tracking bug for my forthcoming upload (including to stable).

mpm-itk (2.4.x series only, not 2.2.x) has an issue where, after it
does its extra fork, it doesn't call ap_lingering_close() in the child
process. This means prefork ends up doing it, in the parent process.
In particular, this means that when using mod_ssl, the connection is
attempted closed in a process that does not have the right state,
starting a new SSL handshake. This causes unclean shutdown, causing
problems with keepalive when using IE and Safari.

It also means "Connection: close" on SSL connections is not honored,
no matter the browser.

A patch has been developed and is currently in user testing.

-- System Information:
Debian Release: 8.1
  APT prefers stable
  APT policy: (750, 'stable'), (500, 'oldstable')
Architecture: amd64 (x86_64)
Foreign Architectures: i386

Kernel: Linux 4.1.4 (SMP w/40 CPU cores)
Locale: LANG=en_DK.UTF-8, LC_CTYPE=en_DK.UTF-8 (charmap=UTF-8)
Shell: /bin/sh linked to /bin/dash
Init: systemd (via /run/systemd/system)

Reply via email to