On Jul 27, 2006, at 11:37 AM, William A. Rowe, Jr. wrote:

Chinese firedrill time folks.

There is a vulnerability affecting mod_rewrite which this release addresses. See the recent commit activity for detail. Need your votes on the following
in the usual http://httpd.apache.org/dev/dist/

 +/-1  Package
 [+1]  apache_1.3.37
 [+1]  httpd-2.0.59
 [+1]  httpd-2.2.3

Many thanks in advance,

your humble RM,

Gory details follow.

Good signatures:

[EMAIL PROTECTED] firedrill $ gpg --verify apache_1.3.37.tar.Z.asc
gpg: Signature made Thu Jul 27 11:40:19 2006 PDT using RSA key ID 10FDE075
gpg: Good signature from "[EMAIL PROTECTED]"
gpg:                 aka "William A. Rowe, Jr. <[EMAIL PROTECTED]>"
gpg:                 aka "[EMAIL PROTECTED]"
gpg:                 aka "[EMAIL PROTECTED]"
[EMAIL PROTECTED] firedrill $ gpg --verify apache_1.3.37.tar.gz.asc
gpg: Signature made Thu Jul 27 11:35:51 2006 PDT using RSA key ID 10FDE075
gpg: Good signature from "[EMAIL PROTECTED]"
gpg:                 aka "William A. Rowe, Jr. <[EMAIL PROTECTED]>"
gpg:                 aka "[EMAIL PROTECTED]"
gpg:                 aka "[EMAIL PROTECTED]"
[EMAIL PROTECTED] firedrill $ gpg --verify httpd-2.0.59.tar.bz2.asc
gpg: Signature made Thu Jul 27 10:44:55 2006 PDT using RSA key ID 10FDE075
gpg: Good signature from "[EMAIL PROTECTED]"
gpg:                 aka "William A. Rowe, Jr. <[EMAIL PROTECTED]>"
gpg:                 aka "[EMAIL PROTECTED]"
gpg:                 aka "[EMAIL PROTECTED]"
[EMAIL PROTECTED] firedrill $ gpg --verify httpd-2.0.59.tar.gz.asc
gpg: Signature made Thu Jul 27 10:44:54 2006 PDT using RSA key ID 10FDE075
gpg: Good signature from "[EMAIL PROTECTED]"
gpg:                 aka "William A. Rowe, Jr. <[EMAIL PROTECTED]>"
gpg:                 aka "[EMAIL PROTECTED]"
gpg:                 aka "[EMAIL PROTECTED]"
[EMAIL PROTECTED] firedrill $ gpg --verify httpd-2.2.3.tar.bz2.asc
gpg: Signature made Thu Jul 27 10:35:57 2006 PDT using RSA key ID 10FDE075
gpg: Good signature from "[EMAIL PROTECTED]"
gpg:                 aka "William A. Rowe, Jr. <[EMAIL PROTECTED]>"
gpg:                 aka "[EMAIL PROTECTED]"
gpg:                 aka "[EMAIL PROTECTED]"
[EMAIL PROTECTED] firedrill $ gpg --verify httpd-2.2.3.tar.gz.asc
gpg: Signature made Thu Jul 27 10:35:49 2006 PDT using RSA key ID 10FDE075
gpg: Good signature from "[EMAIL PROTECTED]"
gpg:                 aka "William A. Rowe, Jr. <[EMAIL PROTECTED]>"
gpg:                 aka "[EMAIL PROTECTED]"
gpg:                 aka "[EMAIL PROTECTED]"

Good checksums:

[EMAIL PROTECTED] firedrill $ for f in *.md5 ; do md5sum -cv $f ; done
apache_1.3.37.tar.Z OK
apache_1.3.37.tar.gz OK
httpd-2.0.59.tar.bz2 OK
httpd-2.0.59.tar.gz OK
httpd-2.2.3.tar.bz2 OK
httpd-2.2.3.tar.gz OK

Perl-framework test results:

Darwin graymalkin.sandla.org 8.7.0 Darwin Kernel Version 8.7.0: Fri May 26 15:20:53 PDT 2006; root:xnu-792.6.76.obj~1/RELEASE_PPC Power Macintosh powerpc

1.3.36:

Failed Test              Stat Wstat Total Fail  Failed  List of Failed
------------------------------------------------------------------------ -------
t/apache/contentlength.t               20    6  30.00%  6 10 14 16 18 20
t/apache/headers.t                     24    3  12.50%  3 6 9
t/apache/pr37166.t                      4    1  25.00%  4
t/modules/include.t                    79    1   1.27%  43
t/modules/proxy.t                      13    2  15.38%  10-11
(1 subtest UNEXPECTEDLY SUCCEEDED), 28 tests and 19 subtests skipped.
Failed 5/65 test scripts, 92.31% okay. 13/1826 subtests failed, 99.29% okay.

Failed Test              Stat Wstat Total Fail  Failed  List of Failed
------------------------------------------------------------------------ -------
t/apache/contentlength.t               20    6  30.00%  6 10 14 16 18 20
t/apache/headers.t                     24    3  12.50%  3 6 9
t/apache/pr37166.t                      4    1  25.00%  4
t/modules/include.t                    79    1   1.27%  43
t/modules/proxy.t                      13    2  15.38%  10-11
(1 subtest UNEXPECTEDLY SUCCEEDED), 28 tests and 19 subtests skipped.
Failed 5/65 test scripts, 92.31% okay. 13/1826 subtests failed, 99.29% okay.

No regressions. +1.

2.0.58

All tests successful (1 subtest UNEXPECTEDLY SUCCEEDED), 10 tests and 12 subtests skipped. Files=76, Tests=2806, 632 wallclock secs (79.91 cusr + 30.84 csys = 110.75 CPU)

2.0.59

All tests successful (1 subtest UNEXPECTEDLY SUCCEEDED), 10 tests and 12 subtests skipped. Files=76, Tests=2806, 297 wallclock secs (79.36 cusr + 30.39 csys = 109.75 CPU)

No regressions. +1.

2.2.2

All tests successful, 3 tests and 2 subtests skipped.
Files=76, Tests=2832, 809 wallclock secs (82.60 cusr + 32.56 csys = 115.16 CPU)
[warning] server localhost:8529 shutdown

2.2.3

All tests successful, 3 tests and 2 subtests skipped.
Files=76, Tests=2832, 308 wallclock secs (79.34 cusr + 30.91 csys = 110.25 CPU)

No regressions. +1.

FreeBSD bagheera.sandla.org. 6.1-STABLE FreeBSD 6.1-STABLE #5: Thu Jun 8 17:04:50 PDT 2006 [EMAIL PROTECTED]:/usr/obj/ usr/src/sys/GENERIC i386

1.3.36

Failed Test              Stat Wstat Total Fail  List of Failed
------------------------------------------------------------------------ -------
t/apache/contentlength.t               20    6  6 10 14 16 18 20
t/apache/headers.t                     24    3  3 6 9
t/apache/limits.t                      10    1  8
t/apache/pr37166.t                      4    1  4
t/modules/include.t                    79    1  43
t/modules/proxy.t                      13    2  10-11
(1 subtest UNEXPECTEDLY SUCCEEDED), 28 tests and 19 subtests skipped.
Failed 6/65 test scripts. 14/1836 subtests failed.
Files=65, Tests=1836, 870 wallclock secs (180.72 cusr + 41.21 csys = 221.93 CPU)

1.3.37

Failed Test              Stat Wstat Total Fail  List of Failed
------------------------------------------------------------------------ -------
t/apache/contentlength.t               20    6  6 10 14 16 18 20
t/apache/headers.t                     24    3  3 6 9
t/apache/limits.t                      10    1  8
t/apache/pr37166.t                      4    1  4
t/modules/include.t                    79    1  43
t/modules/proxy.t                      13    2  10-11
(1 subtest UNEXPECTEDLY SUCCEEDED), 28 tests and 19 subtests skipped.
Failed 6/65 test scripts. 14/1836 subtests failed.
Files=65, Tests=1836, 876 wallclock secs (181.61 cusr + 41.56 csys = 223.17 CPU)

No regressions. +1.

2.0.58

2.0.59

2.2.2

2.2.3

All of these hang on the t/protocol/nntp-like.t. I'll try and put a patch into that test that skips if we're on FreeBSD and accf_http.ko or accf_data.ko are loaded.

S.

--
[EMAIL PROTECTED]            http://www.temme.net/sander/
PGP FP: 51B4 8727 466A 0BC3 69F4  B7B8 B2BE BC40 1529 24AF


Attachment: smime.p7s
Description: S/MIME cryptographic signature

Reply via email to