ELSA-2017-2478

ELSA-2017-2478 - httpd security update

Type:SECURITY
Impact:IMPORTANT
Release Date:2017-08-15

Description


[2.2.15-60.0.1.5]
- replace index.html with Oracle's index page oracle_index.html
- update vstring in specfile

[2.2.15-60.5]
- Resolves: #1463194 - CVE-2017-3167 httpd: ap_get_basic_auth_pw()
authentication bypass
- Resolves: #1463197 - CVE-2017-3169 httpd: mod_ssl NULL pointer dereference
- Resolves: #1463207 - CVE-2017-7679 httpd: mod_mime buffer overread
- Resolves: #1470748 - CVE-2017-9788 httpd: Uninitialized memory reflection
in mod_auth_digest


Related CVEs


CVE-2017-3169
CVE-2017-3167
CVE-2017-9788
CVE-2017-7679

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 6 (i386) httpd-2.2.15-60.0.1.el6_9.5.src.rpmd1c92e5fb45b5f575a2a88543361eadf70f5be54e0034e7042302c9373a0417dELSA-2022-9714ol6_i386_latest
httpd-2.2.15-60.0.1.el6_9.5.src.rpmd1c92e5fb45b5f575a2a88543361eadf70f5be54e0034e7042302c9373a0417dELSA-2022-9714ol6_i386_latest_archive
httpd-2.2.15-60.0.1.el6_9.5.src.rpmd1c92e5fb45b5f575a2a88543361eadf70f5be54e0034e7042302c9373a0417dELSA-2022-9714ol6_u9_i386_patch
httpd-2.2.15-60.0.1.el6_9.5.i686.rpm7518654fe319a4ba2128567c367e77c76ca069cc707d2bf242a86d6b1256495dELSA-2022-9714ol6_i386_latest
httpd-2.2.15-60.0.1.el6_9.5.i686.rpm7518654fe319a4ba2128567c367e77c76ca069cc707d2bf242a86d6b1256495dELSA-2022-9714ol6_i386_latest_archive
httpd-2.2.15-60.0.1.el6_9.5.i686.rpm7518654fe319a4ba2128567c367e77c76ca069cc707d2bf242a86d6b1256495dELSA-2022-9714ol6_u9_i386_patch
httpd-devel-2.2.15-60.0.1.el6_9.5.i686.rpm6d013172b7d8a750f38c814a906bc82413f1303c709381bf4e32748d730ffef9ELSA-2022-9714ol6_i386_latest
httpd-devel-2.2.15-60.0.1.el6_9.5.i686.rpm6d013172b7d8a750f38c814a906bc82413f1303c709381bf4e32748d730ffef9ELSA-2022-9714ol6_i386_latest_archive
httpd-devel-2.2.15-60.0.1.el6_9.5.i686.rpm6d013172b7d8a750f38c814a906bc82413f1303c709381bf4e32748d730ffef9ELSA-2022-9714ol6_u9_i386_patch
httpd-manual-2.2.15-60.0.1.el6_9.5.noarch.rpm3e3c70ce462e79a402bcc9d734fa5ee35ac2610f98eab0f494746bfb9bc54a9bELSA-2022-9714ol6_i386_latest
httpd-manual-2.2.15-60.0.1.el6_9.5.noarch.rpm3e3c70ce462e79a402bcc9d734fa5ee35ac2610f98eab0f494746bfb9bc54a9bELSA-2022-9714ol6_i386_latest_archive
httpd-manual-2.2.15-60.0.1.el6_9.5.noarch.rpm3e3c70ce462e79a402bcc9d734fa5ee35ac2610f98eab0f494746bfb9bc54a9bELSA-2022-9714ol6_u9_i386_patch
httpd-tools-2.2.15-60.0.1.el6_9.5.i686.rpm7f445dd48735b27120db98405f704381d94316f68bc81f08eca8d7324b59e700ELSA-2022-9714ol6_i386_latest
httpd-tools-2.2.15-60.0.1.el6_9.5.i686.rpm7f445dd48735b27120db98405f704381d94316f68bc81f08eca8d7324b59e700ELSA-2022-9714ol6_i386_latest_archive
httpd-tools-2.2.15-60.0.1.el6_9.5.i686.rpm7f445dd48735b27120db98405f704381d94316f68bc81f08eca8d7324b59e700ELSA-2022-9714ol6_u9_i386_patch
mod_ssl-2.2.15-60.0.1.el6_9.5.i686.rpm8269fa10ac723daaa85e1f61f9d3e06e38d207ad84223968f30b739762ca2ea7ELSA-2022-9714ol6_i386_latest
mod_ssl-2.2.15-60.0.1.el6_9.5.i686.rpm8269fa10ac723daaa85e1f61f9d3e06e38d207ad84223968f30b739762ca2ea7ELSA-2022-9714ol6_i386_latest_archive
mod_ssl-2.2.15-60.0.1.el6_9.5.i686.rpm8269fa10ac723daaa85e1f61f9d3e06e38d207ad84223968f30b739762ca2ea7ELSA-2022-9714ol6_u9_i386_patch
Oracle Linux 6 (x86_64) httpd-2.2.15-60.0.1.el6_9.5.src.rpmd1c92e5fb45b5f575a2a88543361eadf70f5be54e0034e7042302c9373a0417dELSA-2022-9714ol6_u9_x86_64_patch
httpd-2.2.15-60.0.1.el6_9.5.src.rpmd1c92e5fb45b5f575a2a88543361eadf70f5be54e0034e7042302c9373a0417dELSA-2022-9714ol6_x86_64_latest
httpd-2.2.15-60.0.1.el6_9.5.src.rpmd1c92e5fb45b5f575a2a88543361eadf70f5be54e0034e7042302c9373a0417dELSA-2022-9714ol6_x86_64_latest_archive
httpd-2.2.15-60.0.1.el6_9.5.x86_64.rpm70b6215feb87511217f6652626eb070788b9f68b0123a6af186c81f48d7b6cb4ELSA-2022-9714ol6_u9_x86_64_patch
httpd-2.2.15-60.0.1.el6_9.5.x86_64.rpm70b6215feb87511217f6652626eb070788b9f68b0123a6af186c81f48d7b6cb4ELSA-2022-9714ol6_x86_64_latest
httpd-2.2.15-60.0.1.el6_9.5.x86_64.rpm70b6215feb87511217f6652626eb070788b9f68b0123a6af186c81f48d7b6cb4ELSA-2022-9714ol6_x86_64_latest_archive
httpd-devel-2.2.15-60.0.1.el6_9.5.i686.rpm6d013172b7d8a750f38c814a906bc82413f1303c709381bf4e32748d730ffef9ELSA-2022-9714ol6_u9_x86_64_patch
httpd-devel-2.2.15-60.0.1.el6_9.5.i686.rpm6d013172b7d8a750f38c814a906bc82413f1303c709381bf4e32748d730ffef9ELSA-2022-9714ol6_x86_64_latest
httpd-devel-2.2.15-60.0.1.el6_9.5.i686.rpm6d013172b7d8a750f38c814a906bc82413f1303c709381bf4e32748d730ffef9ELSA-2022-9714ol6_x86_64_latest_archive
httpd-devel-2.2.15-60.0.1.el6_9.5.x86_64.rpm98295e95a6d56a71ff0d243859125d5b94cc98edb7b9a79a381242bf150e89c7ELSA-2022-9714ol6_u9_x86_64_patch
httpd-devel-2.2.15-60.0.1.el6_9.5.x86_64.rpm98295e95a6d56a71ff0d243859125d5b94cc98edb7b9a79a381242bf150e89c7ELSA-2022-9714ol6_x86_64_latest
httpd-devel-2.2.15-60.0.1.el6_9.5.x86_64.rpm98295e95a6d56a71ff0d243859125d5b94cc98edb7b9a79a381242bf150e89c7ELSA-2022-9714ol6_x86_64_latest_archive
httpd-manual-2.2.15-60.0.1.el6_9.5.noarch.rpm3e3c70ce462e79a402bcc9d734fa5ee35ac2610f98eab0f494746bfb9bc54a9bELSA-2022-9714ol6_u9_x86_64_patch
httpd-manual-2.2.15-60.0.1.el6_9.5.noarch.rpm3e3c70ce462e79a402bcc9d734fa5ee35ac2610f98eab0f494746bfb9bc54a9bELSA-2022-9714ol6_x86_64_latest
httpd-manual-2.2.15-60.0.1.el6_9.5.noarch.rpm3e3c70ce462e79a402bcc9d734fa5ee35ac2610f98eab0f494746bfb9bc54a9bELSA-2022-9714ol6_x86_64_latest_archive
httpd-tools-2.2.15-60.0.1.el6_9.5.x86_64.rpm4254a3195b8d415977167f95812f925a26bc676799bedf8349db6559b61345f0ELSA-2022-9714ol6_u9_x86_64_patch
httpd-tools-2.2.15-60.0.1.el6_9.5.x86_64.rpm4254a3195b8d415977167f95812f925a26bc676799bedf8349db6559b61345f0ELSA-2022-9714ol6_x86_64_latest
httpd-tools-2.2.15-60.0.1.el6_9.5.x86_64.rpm4254a3195b8d415977167f95812f925a26bc676799bedf8349db6559b61345f0ELSA-2022-9714ol6_x86_64_latest_archive
mod_ssl-2.2.15-60.0.1.el6_9.5.x86_64.rpm5710d1c23caca54f8a42cae59ac4e7a5c7f4d78f546aa23b235295626b608c3cELSA-2022-9714ol6_u9_x86_64_patch
mod_ssl-2.2.15-60.0.1.el6_9.5.x86_64.rpm5710d1c23caca54f8a42cae59ac4e7a5c7f4d78f546aa23b235295626b608c3cELSA-2022-9714ol6_x86_64_latest
mod_ssl-2.2.15-60.0.1.el6_9.5.x86_64.rpm5710d1c23caca54f8a42cae59ac4e7a5c7f4d78f546aa23b235295626b608c3cELSA-2022-9714ol6_x86_64_latest_archive



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete