[UCI-Linux] Joe Orton: [SECURITY] Fedora Core 2 Update: httpd-2.0.50-2.1

Mike Iglesias IGLESIAS at uci.edu
Tue Jul 20 09:47:07 PDT 2004


------- Forwarded Message

Return-Path: fedora-announce-list-bounces at redhat.com
Delivery-Date: Mon Jul 19 11:59:19 2004
Received: from mta2.service.uci.edu (mta2.service.uci.edu [128.195.200.202])
	by draco.acs.uci.edu (8.12.8/8.12.8) with ESMTP id i6JIxEiK030007
	for <iglesias at draco.acs.uci.edu>; Mon, 19 Jul 2004 11:59:14 -0700
Received: (from daemon at localhost)
	by mta2.service.uci.edu (8.11.4-20030923/8.11.2) id i6JIxEa07203
	for iglesias at draco.acs.uci.edu.xyzzy; Mon, 19 Jul 2004 11:59:14 -0700 (PDT)
Received: (from daemon at localhost)
	by mta2.service.uci.edu (8.11.4-20030923/8.11.2) id i6JIxDr07169
	for iglesias at uci.edu.xyzzy; Mon, 19 Jul 2004 11:59:13 -0700 (PDT)
Received: from hormel.redhat.com (hormel.redhat.com [209.132.177.30])
	by mta2.service.uci.edu (8.11.4-20030923/8.11.2) with ESMTP id i6JIwS906555
	for <iglesias at uci.edu>; Mon, 19 Jul 2004 11:58:29 -0700 (PDT)
Received: from listman.util.phx.redhat.com (listman.util.phx.redhat.com [10.8.4.110])
	by hormel.redhat.com (Postfix) with ESMTP
	id CD05573A8C; Mon, 19 Jul 2004 14:57:39 -0400 (EDT)
Received: from int-mx1.corp.redhat.com (int-mx1.corp.redhat.com
	[172.16.52.254])
	by listman.util.phx.redhat.com (8.12.10/8.12.10) with ESMTP id
	i6JIrCXW001117
	for <fedora-announce-list at listman.util.phx.redhat.com>;
	Mon, 19 Jul 2004 14:53:12 -0400
Received: (from mail at localhost)
	by int-mx1.corp.redhat.com (8.11.6/8.11.6) id i6JIrCF26638
	for fedora-announce-list at listman.util.phx.redhat.com;
	Mon, 19 Jul 2004 14:53:12 -0400
Received: from radish.cambridge.redhat.com (radish.cambridge.redhat.com
	[172.16.18.90])
	by int-mx1.corp.redhat.com (8.11.6/8.11.6) with ESMTP id i6JIrBa26633
	for <fedora-announce-list at redhat.com>; Mon, 19 Jul 2004 14:53:11 -0400
Received: from radish.cambridge.redhat.com (localhost.localdomain [127.0.0.1])
	by radish.cambridge.redhat.com (8.12.10/8.12.7) with ESMTP id
	i6JIrA7m004407
	for <fedora-announce-list at redhat.com>; Mon, 19 Jul 2004 19:53:10 +0100
Received: (from jorton at localhost)
	by radish.cambridge.redhat.com (8.12.10/8.12.10/Submit) id
	i6JIrAMK004406
	for fedora-announce-list at redhat.com; Mon, 19 Jul 2004 19:53:10 +0100
Date: Mon, 19 Jul 2004 19:53:10 +0100
From: Joe Orton <jorton at redhat.com>
To: fedora-announce-list at redhat.com
Message-ID: <20040719185310.GB4372 at redhat.com>
Mime-Version: 1.0
User-Agent: Mutt/1.4.1i
X-loop: fedora-announce-list at redhat.com
X-Mailman-Approved-At: Mon, 19 Jul 2004 14:57:24 -0400
Subject: [SECURITY] Fedora Core 2 Update: httpd-2.0.50-2.1
X-BeenThere: fedora-announce-list at redhat.com
X-Mailman-Version: 2.1.5
Precedence: junk
Reply-To: fedora-list at redhat.com
List-Id: Announcements related to the Fedora Project
	<fedora-announce-list.redhat.com>
List-Unsubscribe: <http://www.redhat.com/mailman/listinfo/fedora-announce-list>, 
	<mailto:fedora-announce-list-request at redhat.com?subject=unsubscribe>
List-Archive: </archives/fedora-announce-list>
List-Post: <mailto:fedora-announce-list at redhat.com>
List-Help: <mailto:fedora-announce-list-request at redhat.com?subject=help>
List-Subscribe: <http://www.redhat.com/mailman/listinfo/fedora-announce-list>, 
	<mailto:fedora-announce-list-request at redhat.com?subject=subscribe>
Content-Type: multipart/mixed; boundary="===============1439873374=="
Sender: fedora-announce-list-bounces at redhat.com
Errors-To: fedora-announce-list-bounces at redhat.com
X-UCIRVINE-MailScanner: No viruses found
X-DRACO-MailScanner: Not checked for viruses
Status: O
X-Status: 
X-Keywords:                  
X-UID: 9


- --===============1439873374==
Content-Type: multipart/signed; micalg=pgp-sha1;
	protocol="application/pgp-signature"; boundary="SkvwRMAIpAhPCcCJ"
Content-Disposition: inline


- --SkvwRMAIpAhPCcCJ
Content-Type: text/plain; charset=utf-8
Content-Disposition: inline
Content-Transfer-Encoding: quoted-printable

- ---------------------------------------------------------------------
Fedora Update Notification
FEDORA-2004-204
2004-07-19
- ---------------------------------------------------------------------

Product     : Fedora Core 2
Name        : httpd
Version     : 2.0.50                     =20
Release     : 2.1                 =20
Summary     : Apache HTTP Server
Description :
Apache is a powerful, full-featured, efficient, and freely-available
Web server. Apache is also the most popular Web server on the
Internet.

- ---------------------------------------------------------------------
Update Information:

This update includes the latest stable release of Apache httpd 2.0,
including security fixes for a remotely triggerable memory leak=20
(CVE CAN-2004-0493), and a buffer overflow in mod_ssl which can be
triggered only by a (trusted) client certificate with a long subject
DN field (CVE CAN-2004-0488).

- ---------------------------------------------------------------------
* Tue Jun 29 2004 Joe Orton <jorton at redhat.com> 2.0.50-2.1

- - update to 2.0.50
- - mod_autoindex: don't truncate output on stat() failure (#126930)

- ---------------------------------------------------------------------
This update can be downloaded from:
  http://download.fedora.redhat.com/pub/fedora/linux/core/updates/2/

88f76a8960e558ea9cd0f833ec26ecbf  SRPMS/httpd-2.0.50-2.1.src.rpm
b21369e9d1ad14bde9f8cdd474d4e576  x86_64/httpd-2.0.50-2.1.x86_64.rpm
b31e0fc8d050a42ab13c82feedc01b1b  x86_64/httpd-devel-2.0.50-2.1.x86_64.rpm
d40fc1d0f89cc86ebec838639ba37ea1  x86_64/httpd-manual-2.0.50-2.1.x86_64.rpm
5fa5e5728b8dedc20b2704de1bd37840  x86_64/mod_ssl-2.0.50-2.1.x86_64.rpm
6e65479828eb9e8a4c7b2424ebf39495  x86_64/debug/httpd-debuginfo-2.0.50-2.1.x=
86_64.rpm
da86a44426edabbadceae2d58fc0b1d5  i386/httpd-2.0.50-2.1.i386.rpm
000b8fc928195440856420091c33b9ec  i386/httpd-devel-2.0.50-2.1.i386.rpm
4b062f1003cf3d203a408133e8f160c5  i386/httpd-manual-2.0.50-2.1.i386.rpm
92a8f9747563aa50abc842aba1d65bc3  i386/mod_ssl-2.0.50-2.1.i386.rpm
aa1210b75b36033a7bc55b47a86e2539  i386/debug/httpd-debuginfo-2.0.50-2.1.i38=
6.rpm

This update can also be installed with the Update Agent; you can
launch the Update Agent with the 'up2date' command. =20
- ---------------------------------------------------------------------

- --SkvwRMAIpAhPCcCJ
Content-Type: application/pgp-signature
Content-Disposition: inline

- -----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.3 (GNU/Linux)

iD8DBQFA/BiWR/aWnQ5EzwwRAuLQAKCzthG6ek4DnZ0+oA7/wGUE2YvHwgCfXWHs
mSZ66pU5WVt+uvZ7n4hLVyg=
=Dv+4
- -----END PGP SIGNATURE-----

- --SkvwRMAIpAhPCcCJ--



- --===============1439873374==
Content-Type: text/plain; charset="us-ascii"
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
Content-Disposition: inline

- --
fedora-announce-list mailing list
fedora-announce-list at redhat.com
http://www.redhat.com/mailman/listinfo/fedora-announce-list

- --===============1439873374==--


------- End of Forwarded Message



More information about the UCI-Linux mailing list