ELSA-2015-1667

ELSA-2015-1667 - httpd security update

Type:SECURITY
Severity:MODERATE
Release Date:2015-08-24

Description


[2.4.6-31.0.1.el7_1.1]
- replace index.html with Oracle's index page oracle_index.html

[2.4.6-31.1]
- core: fix chunk header parsing defect (CVE-2015-3183)
- core: replace of ap_some_auth_required with ap_some_authn_required
and ap_force_authn hook (CVE-2015-3185)


Related CVEs


CVE-2015-3183
CVE-2015-3185

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 7 (x86_64) httpd-2.4.6-31.0.1.el7_1.1.src.rpm272dfc56921bea18850913835936eb59ELBA-2020-5033
httpd-2.4.6-31.0.1.el7_1.1.x86_64.rpmee96edfa68bbef6ebed2ad0c0aa2fc37ELBA-2020-5033
httpd-devel-2.4.6-31.0.1.el7_1.1.x86_64.rpm049b2305970c540657bd4d55994de0f6ELBA-2020-5033
httpd-manual-2.4.6-31.0.1.el7_1.1.noarch.rpme8e5971d329bbf4af1887a775abe401dELBA-2020-5033
httpd-tools-2.4.6-31.0.1.el7_1.1.x86_64.rpmc4780171d1620a9d3249e8ba4edaa354ELBA-2020-5033
mod_ldap-2.4.6-31.0.1.el7_1.1.x86_64.rpm1300ee2d12b2ce6802fe6e539ac66fd3ELBA-2020-5033
mod_proxy_html-2.4.6-31.0.1.el7_1.1.x86_64.rpm6907dde2816d444d68b8e7152728a67eELBA-2020-5033
mod_session-2.4.6-31.0.1.el7_1.1.x86_64.rpmcc2f41b7917130257591a7f80f42d48aELBA-2020-5033
mod_ssl-2.4.6-31.0.1.el7_1.1.x86_64.rpm322af5175530ab253a46de8de23b1c6bELBA-2020-5033



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete