* SECURITY UPDATE: arbitrary code execution via crafted SetEnvIf
directive (LP: #811422)
- debian/patches/215_CVE-2011-3607.dpatch: validate length in
server/util.c.
- CVE-2011-3607
* SECURITY UPDATE: another mod_proxy reverse proxy exposure
- debian/patches/216_CVE-2011-4317.dpatch: validate additional URIs in
modules/mappers/mod_rewrite.c, modules/proxy/mod_proxy.c,
server/protocol.c.
- CVE-2011-4317
* SECURITY UPDATE: denial of service via invalid cookie
- debian/patches/217_CVE-2012-0021.dpatch: check name and value in
modules/loggers/mod_log_config.c.
- CVE-2012-0021
* SECURITY UPDATE: denial of service and possible code execution via
type field modification within a scoreboard shared memory segment
- debian/patches/218_CVE-2012-0031.dpatch: check type field in
server/scoreboard.c.
- CVE-2012-0031
* SECURITY UPDATE: cookie disclosure via Bad Request errors
- debian/patches/219_CVE-2012-0053.dpatch: check lengths in
server/protocol.c.
- CVE-2012-0053
-- Marc Deslauriers <email address hidden> Tue, 14 Feb 2012 09:35:36 -0500
This bug was fixed in the package apache2 - 2.2.20-1ubuntu1.2
---------------
apache2 (2.2.20-1ubuntu1.2) oneiric-security; urgency=low
* SECURITY UPDATE: arbitrary code execution via crafted SetEnvIf patches/ 215_CVE- 2011-3607. dpatch: validate length in util.c. patches/ 216_CVE- 2011-4317. dpatch: validate additional URIs in mappers/ mod_rewrite. c, modules/ proxy/mod_ proxy.c, protocol. c. patches/ 217_CVE- 2012-0021. dpatch: check name and value in loggers/ mod_log_ config. c. patches/ 218_CVE- 2012-0031. dpatch: check type field in scoreboard. c. patches/ 219_CVE- 2012-0053. dpatch: check lengths in protocol. c.
directive (LP: #811422)
- debian/
server/
- CVE-2011-3607
* SECURITY UPDATE: another mod_proxy reverse proxy exposure
- debian/
modules/
server/
- CVE-2011-4317
* SECURITY UPDATE: denial of service via invalid cookie
- debian/
modules/
- CVE-2012-0021
* SECURITY UPDATE: denial of service and possible code execution via
type field modification within a scoreboard shared memory segment
- debian/
server/
- CVE-2012-0031
* SECURITY UPDATE: cookie disclosure via Bad Request errors
- debian/
server/
- CVE-2012-0053
-- Marc Deslauriers <email address hidden> Tue, 14 Feb 2012 09:35:36 -0500