Описание
ELSA-2020-1121: httpd security, bug fix, and enhancement update (MODERATE)
[2.4.6-93.0.1]
- replace index.html with Oracles index page oracle_index.html
[2.4.6-93]
- Resolves: #1677496 - CVE-2018-17199 httpd: mod_session_cookie does not respect expiry time
[2.4.6-92]
- htpasswd: add SHA-2 crypt() support (#1486889)
[2.4.6-91]
- Resolves: #1630886 - scriptlet can fail if hostname is not installed
- Resolves: #1565465 - CVE-2017-15710 httpd: Out of bound write in mod_authnz_ldap when using too small Accept-Language values
- Resolves: #1568298 - CVE-2018-1301 httpd: Out of bounds access after failure in reading the HTTP request
- Resolves: #1673457 - Apache child process crashes because ScriptAliasMatch directive
- Resolves: #1633152 - mod_session missing apr-util-openssl
- Resolves: #1649470 - httpd response contains garbage in Content-Type header
- Resolves: #1724034 - Unexpected OCSP in proxy SSL connection
Обновленные пакеты
Oracle Linux 7
Oracle Linux aarch64
httpd
2.4.6-93.0.1.el7
httpd-devel
2.4.6-93.0.1.el7
httpd-manual
2.4.6-93.0.1.el7
httpd-tools
2.4.6-93.0.1.el7
mod_ldap
2.4.6-93.0.1.el7
mod_proxy_html
2.4.6-93.0.1.el7
mod_session
2.4.6-93.0.1.el7
mod_ssl
2.4.6-93.0.1.el7
Oracle Linux x86_64
httpd
2.4.6-93.0.1.el7
httpd-devel
2.4.6-93.0.1.el7
httpd-manual
2.4.6-93.0.1.el7
httpd-tools
2.4.6-93.0.1.el7
mod_ldap
2.4.6-93.0.1.el7
mod_proxy_html
2.4.6-93.0.1.el7
mod_session
2.4.6-93.0.1.el7
mod_ssl
2.4.6-93.0.1.el7