ELBA-2025-35265

ELBA-2025-35265 - libmodsecurity Bug Fix update

Type:BUG
Impact:NA
Release Date:2025-06-05

Description


[3.0.14-8]
- Restore numbered Source entries for EPEL8

* Mon May 26 2025 Mikel Olasagasti Uranga
- Update to 3.0.14 - Closes rhbz#2347612 rhbz#2340755 CVE-2025-27110

* Fri Jan 17 2025 Fedora Release Engineering
- Rebuilt for https://fedoraproject.org/wiki/Fedora_42_Mass_Rebuild

* Fri Oct 25 2024 Mikel Olasagasti Uranga
- Update to 3.0.13 - Closes rhbz#2309459

[3.0.12-3]
- Rebuilt for https://fedoraproject.org/wiki/Fedora_41_Mass_Rebuild

[3.0.12-2]
- Add GPG check
- Change project's URL to owasp-modsecurity

[3.0.12-1]
- Update to 3.0.12 rhbz#2253518
- Fix CVE-2024-1019 rhbz#2262017 rhbz#2262018 rhbz#2262019

[3.0.10-3]
- Rebuilt for https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild

[3.0.10-2]
- Rebuilt for https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild

[3.0.10-1]
- Update to 3.0.10 rhbz#2225895

[3.0.9-3]
- Rebuilt for https://fedoraproject.org/wiki/Fedora_39_Mass_Rebuild

[3.0.9-2]
- Use geoip instead of libmaxminddb for EPEL 7 and 8 builds

[3.0.9-1]
- 2828.patch: drop, included in 3.0.9
- Remove deps required for autoreconf
- Minor cosmetic change for configure
- ModSecurity_cookie_parsing_fix_303.patch: remove as not required since 3.0.4
- 0001-Fix-build-on-non-x86-arch.patch: remove as not required since 3.0.4
- modsecurity.pc: drop as is being shipped since 3.0.3

[3.0.8-3]
- Use PCRE2 rhbz#2128321
- Use libmaxminddb instead of old GeoIP
- Migrate to SPDX identifier for License
- Change homepage
- Remove .la file for EPEL

[3.0.8-2]
- Rebuilt for https://fedoraproject.org/wiki/Fedora_38_Mass_Rebuild

[3.0.8-1]
- Update to maintenance release 3.0.8

[3.0.4-7]
- Rebuilt for https://fedoraproject.org/wiki/Fedora_37_Mass_Rebuild

[3.0.4-6]
- Rebuilt for https://fedoraproject.org/wiki/Fedora_36_Mass_Rebuild

[3.0.4-5]
- Rebuilt for https://fedoraproject.org/wiki/Fedora_35_Mass_Rebuild

[3.0.4-4]
- Rebuilt for removed libstdc++ symbol (#1937698)

[3.0.4-3]
- Rebuilt for https://fedoraproject.org/wiki/Fedora_34_Mass_Rebuild

[3.0.4-2]
- Rebuilt for https://fedoraproject.org/wiki/Fedora_33_Mass_Rebuild

[3.0.4-1]
- Update to 3.0.4
- Drop the patch (included in this release)

[3.0.3-6]
- Fix DoS vulnerability (CVE-2019-19886, RHBZ #1801720 / #1801719)

[3.0.3-3]
- Rebuilt for https://fedoraproject.org/wiki/Fedora_32_Mass_Rebuild

[3.0.3-2]
- Rebuilt for https://fedoraproject.org/wiki/Fedora_31_Mass_Rebuild

[3.0.3-1]
- Update to 3.0.3 (rhbz #1672678)
- Remove pkg-config bits since it's included in this release

[3.0.2-5]
- Rebuilt for https://fedoraproject.org/wiki/Fedora_30_Mass_Rebuild

[3.0.2-4]
- Back-port of modsecurity.pc

[3.0.2-3]
- Rebuilt for https://fedoraproject.org/wiki/Fedora_29_Mass_Rebuild

[3.0.2-2]
- Rebuild after PR#1

[3.0.2-1]
- Update to 3.0.2 (rhbz #1563219)




Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 8 (aarch64) libmodsecurity-3.0.14-8.el8.src.rpm6289f8c0d855679e9c3a2ba6e8c9b0775ff826d815c7b2283f8d614fd650eec0-ol8_aarch64_developer_EPEL
libmodsecurity-3.0.14-8.el8.aarch64.rpm8765cc2e9ab90c7dec4993a62579b0b1976aa9d0dff502fb5da5e06a5e553b4a-ol8_aarch64_developer_EPEL
libmodsecurity-devel-3.0.14-8.el8.aarch64.rpmed783c443a699a1df68ca6201f5da8a82650c15cdc3661264436bb7d64c4064e-ol8_aarch64_developer_EPEL
libmodsecurity-static-3.0.14-8.el8.aarch64.rpm2008d3c9924013052ef5a75b70696af9bcbf09fe6d6e087241de4e32904eb7ec-ol8_aarch64_developer_EPEL
Oracle Linux 8 (x86_64) libmodsecurity-3.0.14-8.el8.src.rpm6289f8c0d855679e9c3a2ba6e8c9b0775ff826d815c7b2283f8d614fd650eec0-ol8_x86_64_developer_EPEL
libmodsecurity-3.0.14-8.el8.x86_64.rpm69dfb29be07759fcb84e3b5a5b9f0cfc1e7e8447c69e0599abe4f81ebd81fc8d-ol8_x86_64_developer_EPEL
libmodsecurity-devel-3.0.14-8.el8.x86_64.rpm1d2c3f89f82af5e53d928c288ea3c9da06dcfc05d116660e0183f296ec36fdeb-ol8_x86_64_developer_EPEL
libmodsecurity-static-3.0.14-8.el8.x86_64.rpmb372ca6aa9f112e01815dfcfd2835703000a74cfda46e141cd167cec43543282-ol8_x86_64_developer_EPEL



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete