You are viewing a plain text version of this content. The canonical link for it is here.
Posted to cvs@httpd.apache.org by bu...@apache.org on 2019/08/15 06:08:35 UTC

svn commit: r1048749 - in /websites/staging/httpd/trunk/content: ./ security/vulnerabilities-httpd.xml security/vulnerabilities_24.html

Author: buildbot
Date: Thu Aug 15 06:08:35 2019
New Revision: 1048749

Log:
Staging update by buildbot for httpd

Modified:
    websites/staging/httpd/trunk/content/   (props changed)
    websites/staging/httpd/trunk/content/security/vulnerabilities-httpd.xml
    websites/staging/httpd/trunk/content/security/vulnerabilities_24.html

Propchange: websites/staging/httpd/trunk/content/
------------------------------------------------------------------------------
--- cms:source-revision (original)
+++ cms:source-revision Thu Aug 15 06:08:35 2019
@@ -1 +1 @@
-1865206
+1865207

Modified: websites/staging/httpd/trunk/content/security/vulnerabilities-httpd.xml
==============================================================================
--- websites/staging/httpd/trunk/content/security/vulnerabilities-httpd.xml (original)
+++ websites/staging/httpd/trunk/content/security/vulnerabilities-httpd.xml Thu Aug 15 06:08:35 2019
@@ -83,6 +83,7 @@
      This issue was reported by Matei "Mal" Badanoiu
    </acknowledgements>
    <fixed base="2.4" version="2.4.41" date="20190814"/>
+   <affects prod="httpd" version="2.4.39"/>   
    <affects prod="httpd" version="2.4.38"/>
    <affects prod="httpd" version="2.4.37"/>
    <affects prod="httpd" version="2.4.35"/>
@@ -224,7 +225,7 @@ URL within the request URL.
    <acknowledgements>
 The issue was discovered by Stefan Eissing, greenbytes.de.
 </acknowledgements>
-   <fixed base="2.4" version="2.4.39" date=""/>
+   <fixed base="2.4" version="2.4.39" date="20190401"/>
    <affects prod="httpd" version="2.4.38"/>
    <affects prod="httpd" version="2.4.37"/>
    <affects prod="httpd" version="2.4.35"/>
@@ -244,7 +245,7 @@ The issue was discovered by Stefan Eissi
    <acknowledgements>
        The issue was discovered by Craig Young, &lt;vuln-report@secur3.us>.
    </acknowledgements>
-   <fixed base="2.4" version="2.4.39" date=""/>
+   <fixed base="2.4" version="2.4.39" date="20190401"/>
    <affects prod="httpd" version="2.4.38"/>
    <affects prod="httpd" version="2.4.37"/>
    <affects prod="httpd" version="2.4.35"/>
@@ -277,7 +278,7 @@ The issue was discovered by Stefan Eissi
    <acknowledgements>
        The issue was discovered by Charles Fol.
    </acknowledgements>
-   <fixed base="2.4" version="2.4.39" date=""/>
+   <fixed base="2.4" version="2.4.39" date="20190401"/>
    <affects prod="httpd" version="2.4.38"/>
    <affects prod="httpd" version="2.4.37"/>
    <affects prod="httpd" version="2.4.35"/>
@@ -311,7 +312,7 @@ The issue was discovered by Stefan Eissi
    <acknowledgements>
    The issue was discovered by Simon Kappel.
    </acknowledgements>
-   <fixed base="2.4" version="2.4.39" date=""/>
+   <fixed base="2.4" version="2.4.39" date="20190401"/>
    <affects prod="httpd" version="2.4.38"/>
    <affects prod="httpd" version="2.4.37"/>
    <affects prod="httpd" version="2.4.35"/>
@@ -352,7 +353,7 @@ The issue was discovered by Stefan Eissi
    <acknowledgements>
      The issue was discovered by Michael Kaufmann.
    </acknowledgements>
-   <fixed base="2.4" version="2.4.39" date=""/>
+   <fixed base="2.4" version="2.4.39" date="20190401"/>
    <affects prod="httpd" version="2.4.38"/>
    <affects prod="httpd" version="2.4.37"/>
 </issue>
@@ -373,7 +374,7 @@ The issue was discovered by Stefan Eissi
    <acknowledgements>
    The issue was discovered by Bernhard Lorenz &lt;bernhard.lorenz@alphastrike.io&gt; of Alpha Strike Labs GmbH.
    </acknowledgements>
-   <fixed base="2.4" version="2.4.39" date=""/>
+   <fixed base="2.4" version="2.4.39" date="20190401"/>
    <affects prod="httpd" version="2.4.38"/>
    <affects prod="httpd" version="2.4.37"/>
    <affects prod="httpd" version="2.4.35"/>
@@ -417,7 +418,7 @@ The issue was discovered by Stefan Eissi
    <acknowledgements>
      The issue was discovered through user bug reports.
    </acknowledgements>
-   <fixed base="2.4" version="2.4.38" date=""/>
+   <fixed base="2.4" version="2.4.38" date="20190228"/>
    <affects prod="httpd" version="2.4.37"/>
 </issue>
 <issue reported="20181008" public="20190122">
@@ -434,7 +435,7 @@ The issue was discovered by Stefan Eissi
    <acknowledgements>
       The issue was discovered by Diego Angulo from ImExHS.
    </acknowledgements>
-   <fixed base="2.4" version="2.4.38" date=""/>
+   <fixed base="2.4" version="2.4.38" date="20190228"/>
    <affects prod="httpd" version="2.4.37"/>
    <affects prod="httpd" version="2.4.35"/>
    <affects prod="httpd" version="2.4.34"/>
@@ -476,7 +477,7 @@ The issue was discovered by Stefan Eissi
    <acknowledgements>
 The issue was discovered by Gal Goldshtein of F5 Networks.
 </acknowledgements>
-   <fixed base="2.4" version="2.4.38" date=""/>
+   <fixed base="2.4" version="2.4.38" date="20190228"/>
    <affects prod="httpd" version="2.4.37"/>
    <affects prod="httpd" version="2.4.35"/>
    <affects prod="httpd" version="2.4.34"/>
@@ -506,7 +507,7 @@ protocol.</p>
 <acknowledgements>
 The issue was discovered by Gal Goldshtein of F5 Networks.
 </acknowledgements>
-<fixed base="2.4" version="2.4.35" date=""/>
+<fixed base="2.4" version="2.4.35" date="20180929"/>
 <affects prod="httpd" version="2.4.34"/>
 <affects prod="httpd" version="2.4.33"/>
 <affects prod="httpd" version="2.4.30"/>

Modified: websites/staging/httpd/trunk/content/security/vulnerabilities_24.html
==============================================================================
--- websites/staging/httpd/trunk/content/security/vulnerabilities_24.html (original)
+++ websites/staging/httpd/trunk/content/security/vulnerabilities_24.html Thu Aug 15 06:08:35 2019
@@ -144,7 +144,7 @@ Fixed in Apache httpd 2.4.41</h1><dl>
       </tr>
       <tr>
         <td class="cve-header">Affects</td>
-        <td class="cve-value">2.4.38, 2.4.37, 2.4.35, 2.4.34, 2.4.33, 2.4.30, 2.4.29, 2.4.28, 2.4.27, 2.4.26, 2.4.25, 2.4.23, 2.4.20, 2.4.18, 2.4.17, 2.4.16, 2.4.12, 2.4.10, 2.4.9, 2.4.7, 2.4.6, 2.4.4, 2.4.3, 2.4.2, 2.4.1, 2.4.0</td>
+        <td class="cve-value">2.4.39, 2.4.38, 2.4.37, 2.4.35, 2.4.34, 2.4.33, 2.4.30, 2.4.29, 2.4.28, 2.4.27, 2.4.26, 2.4.25, 2.4.23, 2.4.20, 2.4.18, 2.4.17, 2.4.16, 2.4.12, 2.4.10, 2.4.9, 2.4.7, 2.4.6, 2.4.4, 2.4.3, 2.4.2, 2.4.1, 2.4.0</td>
       </tr>
     </table>
   </dd>
@@ -348,6 +348,10 @@ Fixed in Apache httpd 2.4.39</h1><dl>
         <td class="cve-value">1st April 2019</td>
       </tr>
       <tr>
+        <td class="cve-header">Update Released</td>
+        <td class="cve-value">1st April 2019</td>
+      </tr>
+      <tr>
         <td class="cve-header">Affects</td>
         <td class="cve-value">2.4.38, 2.4.37, 2.4.35, 2.4.34, 2.4.33, 2.4.30, 2.4.29, 2.4.28, 2.4.27, 2.4.26, 2.4.25, 2.4.23, 2.4.20, 2.4.18, 2.4.17</td>
       </tr>
@@ -379,6 +383,10 @@ Fixed in Apache httpd 2.4.39</h1><dl>
         <td class="cve-value">1st April 2019</td>
       </tr>
       <tr>
+        <td class="cve-header">Update Released</td>
+        <td class="cve-value">1st April 2019</td>
+      </tr>
+      <tr>
         <td class="cve-header">Affects</td>
         <td class="cve-value">2.4.38, 2.4.37, 2.4.35, 2.4.34, 2.4.33, 2.4.30, 2.4.29, 2.4.28, 2.4.27, 2.4.26, 2.4.25, 2.4.23, 2.4.20, 2.4.18, 2.4.17, 2.4.16, 2.4.12, 2.4.10, 2.4.9, 2.4.7, 2.4.6, 2.4.4, 2.4.3, 2.4.2, 2.4.1, 2.4.0</td>
       </tr>
@@ -408,6 +416,10 @@ Fixed in Apache httpd 2.4.39</h1><dl>
         <td class="cve-value">1st April 2019</td>
       </tr>
       <tr>
+        <td class="cve-header">Update Released</td>
+        <td class="cve-value">1st April 2019</td>
+      </tr>
+      <tr>
         <td class="cve-header">Affects</td>
         <td class="cve-value">2.4.38, 2.4.37</td>
       </tr>
@@ -439,6 +451,10 @@ The issue was discovered by Stefan Eissi
         <td class="cve-value">1st April 2019</td>
       </tr>
       <tr>
+        <td class="cve-header">Update Released</td>
+        <td class="cve-value">1st April 2019</td>
+      </tr>
+      <tr>
         <td class="cve-header">Affects</td>
         <td class="cve-value">2.4.38, 2.4.37, 2.4.35, 2.4.34</td>
       </tr>
@@ -469,6 +485,10 @@ The issue was discovered by Stefan Eissi
         <td class="cve-value">1st April 2019</td>
       </tr>
       <tr>
+        <td class="cve-header">Update Released</td>
+        <td class="cve-value">1st April 2019</td>
+      </tr>
+      <tr>
         <td class="cve-header">Affects</td>
         <td class="cve-value">2.4.38, 2.4.37, 2.4.35, 2.4.34, 2.4.33, 2.4.30, 2.4.29, 2.4.28, 2.4.27, 2.4.26, 2.4.25, 2.4.23, 2.4.20, 2.4.18, 2.4.17</td>
       </tr>
@@ -500,6 +520,10 @@ The issue was discovered by Stefan Eissi
         <td class="cve-value">1st April 2019</td>
       </tr>
       <tr>
+        <td class="cve-header">Update Released</td>
+        <td class="cve-value">1st April 2019</td>
+      </tr>
+      <tr>
         <td class="cve-header">Affects</td>
         <td class="cve-value">2.4.38, 2.4.37, 2.4.35, 2.4.34, 2.4.33, 2.4.30, 2.4.29, 2.4.28, 2.4.27, 2.4.26, 2.4.25, 2.4.23, 2.4.20, 2.4.18, 2.4.17, 2.4.16, 2.4.12, 2.4.10, 2.4.9, 2.4.7, 2.4.6, 2.4.4, 2.4.3, 2.4.2, 2.4.1, 2.4.0</td>
       </tr>
@@ -534,6 +558,10 @@ Fixed in Apache httpd 2.4.38</h1><dl>
         <td class="cve-value">22nd January 2019</td>
       </tr>
       <tr>
+        <td class="cve-header">Update Released</td>
+        <td class="cve-value">28th February 2019</td>
+      </tr>
+      <tr>
         <td class="cve-header">Affects</td>
         <td class="cve-value">2.4.37</td>
       </tr>
@@ -564,6 +592,10 @@ Fixed in Apache httpd 2.4.38</h1><dl>
         <td class="cve-value">22nd January 2019</td>
       </tr>
       <tr>
+        <td class="cve-header">Update Released</td>
+        <td class="cve-value">28th February 2019</td>
+      </tr>
+      <tr>
         <td class="cve-header">Affects</td>
         <td class="cve-value">2.4.37, 2.4.35, 2.4.34, 2.4.33, 2.4.30, 2.4.29, 2.4.28, 2.4.27, 2.4.26, 2.4.25, 2.4.23, 2.4.20, 2.4.18, 2.4.17, 2.4.16, 2.4.12, 2.4.10, 2.4.9, 2.4.7, 2.4.6, 2.4.4, 2.4.3, 2.4.2, 2.4.1, 2.4.0</td>
       </tr>
@@ -595,6 +627,10 @@ The issue was discovered by Gal Goldshte
         <td class="cve-value">22nd January 2019</td>
       </tr>
       <tr>
+        <td class="cve-header">Update Released</td>
+        <td class="cve-value">28th February 2019</td>
+      </tr>
+      <tr>
         <td class="cve-header">Affects</td>
         <td class="cve-value">2.4.37, 2.4.35, 2.4.34, 2.4.33, 2.4.30, 2.4.29, 2.4.28, 2.4.27, 2.4.26, 2.4.25, 2.4.23, 2.4.20, 2.4.18, 2.4.17</td>
       </tr>
@@ -626,6 +662,10 @@ The issue was discovered by Gal Goldshte
         <td class="cve-value">25th September 2018</td>
       </tr>
       <tr>
+        <td class="cve-header">Update Released</td>
+        <td class="cve-value">29th September 2018</td>
+      </tr>
+      <tr>
         <td class="cve-header">Affects</td>
         <td class="cve-value">2.4.34, 2.4.33, 2.4.30, 2.4.29, 2.4.28, 2.4.27, 2.4.26, 2.4.25, 2.4.23, 2.4.20, 2.4.18</td>
       </tr>