Описание
ELSA-2007-0746: httpd security, bug fix, and enhancement update (MODERATE)
[2.2.3-11.el5.0.1]
- use oracle index page oracle_index.html, update vstring and distro
[2.2.3-11.el5]
- mark httpd.conf config(noreplace) (#247881)
[2.2.3-10.el5]
- add security fix for CVE-2007-3847 (#250761)
[2.2.3-9.el5]
- load mod_version by default (#247881)
[2.2.3-8.el5]
- add 'ServerTokens Full-Release' config option (#240857)
- use init script in logrotate postrotate (#241680)
- fix mod_proxy option inheritance (#245719)
- fix ProxyErrorOverride to only affect 4xx, 5xx responses (#240024)
- bump logresolve line buffer length to 10K (#245763)
- add security fixes for CVE-2007-1863, CVE-2007-3304, and CVE-2006-5752 (#244666)
Обновленные пакеты
Oracle Linux 5
Oracle Linux x86_64
httpd
2.2.3-11.el5.0.1
httpd-devel
2.2.3-11.el5.0.1
httpd-manual
2.2.3-11.el5.0.1
mod_ssl
2.2.3-11.el5.0.1
Oracle Linux i386
httpd
2.2.3-11.el5.0.1
httpd-devel
2.2.3-11.el5.0.1
httpd-manual
2.2.3-11.el5.0.1
mod_ssl
2.2.3-11.el5.0.1
Связанные CVE
Связанные уязвимости
The date handling code in modules/proxy/proxy_util.c (mod_proxy) in Apache 2.3.0, when using a threaded MPM, allows remote origin servers to cause a denial of service (caching forward proxy process crash) via crafted date headers that trigger a buffer over-read.
The date handling code in modules/proxy/proxy_util.c (mod_proxy) in Apache 2.3.0, when using a threaded MPM, allows remote origin servers to cause a denial of service (caching forward proxy process crash) via crafted date headers that trigger a buffer over-read.
The date handling code in modules/proxy/proxy_util.c (mod_proxy) in Apache 2.3.0, when using a threaded MPM, allows remote origin servers to cause a denial of service (caching forward proxy process crash) via crafted date headers that trigger a buffer over-read.
The date handling code in modules/proxy/proxy_util.c (mod_proxy) in Ap ...
The date handling code in modules/proxy/proxy_util.c (mod_proxy) in Apache 2.3.0, when using a threaded MPM, allows remote origin servers to cause a denial of service (caching forward proxy process crash) via crafted date headers that trigger a buffer over-read.