Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2020-1121

Опубликовано: 06 апр. 2020
Источник: oracle-oval
Платформа: Oracle Linux 7

Описание

ELSA-2020-1121: httpd security, bug fix, and enhancement update (MODERATE)

[2.4.6-93.0.1]

  • replace index.html with Oracles index page oracle_index.html

[2.4.6-93]

  • Resolves: #1677496 - CVE-2018-17199 httpd: mod_session_cookie does not respect expiry time

[2.4.6-92]

  • htpasswd: add SHA-2 crypt() support (#1486889)

[2.4.6-91]

  • Resolves: #1630886 - scriptlet can fail if hostname is not installed
  • Resolves: #1565465 - CVE-2017-15710 httpd: Out of bound write in mod_authnz_ldap when using too small Accept-Language values
  • Resolves: #1568298 - CVE-2018-1301 httpd: Out of bounds access after failure in reading the HTTP request
  • Resolves: #1673457 - Apache child process crashes because ScriptAliasMatch directive
  • Resolves: #1633152 - mod_session missing apr-util-openssl
  • Resolves: #1649470 - httpd response contains garbage in Content-Type header
  • Resolves: #1724034 - Unexpected OCSP in proxy SSL connection

Обновленные пакеты

Oracle Linux 7

Oracle Linux aarch64

httpd

2.4.6-93.0.1.el7

httpd-devel

2.4.6-93.0.1.el7

httpd-manual

2.4.6-93.0.1.el7

httpd-tools

2.4.6-93.0.1.el7

mod_ldap

2.4.6-93.0.1.el7

mod_proxy_html

2.4.6-93.0.1.el7

mod_session

2.4.6-93.0.1.el7

mod_ssl

2.4.6-93.0.1.el7

Oracle Linux x86_64

httpd

2.4.6-93.0.1.el7

httpd-devel

2.4.6-93.0.1.el7

httpd-manual

2.4.6-93.0.1.el7

httpd-tools

2.4.6-93.0.1.el7

mod_ldap

2.4.6-93.0.1.el7

mod_proxy_html

2.4.6-93.0.1.el7

mod_session

2.4.6-93.0.1.el7

mod_ssl

2.4.6-93.0.1.el7

Связанные уязвимости

suse-cvrf
около 7 лет назад

Security update for apache2

suse-cvrf
около 7 лет назад

Security update for apache2

suse-cvrf
около 7 лет назад

Security update for apache2

suse-cvrf
около 7 лет назад

Security update for apache2

suse-cvrf
больше 6 лет назад

Security update for apache2