About apache vulnerability updates applied to ports on stable branch

2009-08-25 Thread David Taveras
Hello, In regards to OPENBSD_4_5http://www.openbsd.org/cgi-bin/cvsweb/ports/www/apache-httpd/Makefile?only_with_tag=OPENBSD_4_5. Since the update for 2.2.9 CVSweb reports: Tue Sep 22 2009 apache-httpd (stable branch) was updated to 2.2.9 due to fixes on CVE-2008-2364 and CVE-2007-6420 Sun Jun 28

Re: About apache vulnerability updates applied to ports on stable branch

2009-08-25 Thread Stuart Henderson
On 2009/08/25 12:05, David Taveras wrote: Hello, In regards to OPENBSD_4_5http://www.openbsd.org/cgi-bin/cvsweb/ports/www/apache-httpd/Makefile?only_with_tag=OPENBSD_4_5. Since the update for 2.2.9 CVSweb reports: Tue Sep 22 2009 apache-httpd (stable branch) was updated to 2.2.9 due to

Re: About apache vulnerability updates applied to ports on stable branch

2009-08-25 Thread David Taveras
Hello, On Tue, Aug 25, 2009 at 12:18 PM, Stuart Henderson st...@openbsd.org wrote It needs to be updated in -current first. People need to test and report back on http://marc.info/?l=openbsd-portsm=125120705212520w=2 before this can happen. I understand that 2.2.13 is already being worked

Re: About apache vulnerability updates applied to ports on stable branch

2009-08-25 Thread Felix Kronlage
On Tue, Aug 25, 2009 at 06:18:44PM +0100, Stuart Henderson wrote: OPENBSD_4_5http://www.openbsd.org/cgi-bin/cvsweb/ports/www/apache-httpd/Makefile?only_with_tag=OPENBSD_4_5. [...] It needs to be updated in -current first. People need to test and report back on

Re: About apache vulnerability updates applied to ports on stable branch

2009-08-25 Thread Felix Kronlage
On Tue, Aug 25, 2009 at 12:33:10PM -0500, David Taveras wrote: Hi, I understand that 2.2.13 is already being worked out in MAIN, which is awesome... but iam speaking historical remainings of these known vulnerabilities since they where introduced throughout the life of 2.2.9 and the present