ELSA-2019-2343

ELSA-2019-2343 - httpd security and bug fix update

Type:SECURITY
Severity:MODERATE
Release Date:2019-08-13

Description


[2.4.6-90.0.1]
- replace index.html with Oracles index page oracle_index.html
Resolves: #1566317 - CVE-2018-1312 httpd: Weak Digest auth nonce generation
in mod_auth_digest
- Resolves: #1696141 - CVE-2019-0217 httpd: mod_auth_digest: access control
bypass due to race condition
- Resolves: #1696096 - CVE-2019-0220 httpd: URL normalization inconsistency


Related CVEs


CVE-2019-0217
CVE-2019-0220

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 7 (aarch64) httpd-2.4.6-90.0.1.el7.src.rpmbc0a98576e7d38d69d04c09656f0b4f5ELBA-2020-5033
httpd-2.4.6-90.0.1.el7.aarch64.rpm9989250ccb050057c3f8d73d7449efd0ELBA-2020-5033
httpd-devel-2.4.6-90.0.1.el7.aarch64.rpm837560473802dd0c5349a10d880ea077ELBA-2020-5033
httpd-manual-2.4.6-90.0.1.el7.noarch.rpmc80c531e14fdd12838ef415e767c7330ELBA-2020-5033
httpd-tools-2.4.6-90.0.1.el7.aarch64.rpma6f9833b09a55da4f56716298785613eELBA-2020-5033
mod_ldap-2.4.6-90.0.1.el7.aarch64.rpm8576b55ed6d4595c6d0bf952cb133de4ELBA-2020-5033
mod_proxy_html-2.4.6-90.0.1.el7.aarch64.rpm849f9a147aba1dc327fcd5418cb5ad31ELBA-2020-5033
mod_session-2.4.6-90.0.1.el7.aarch64.rpm28070d890a469873afdcb22e069d6986ELBA-2020-5033
mod_ssl-2.4.6-90.0.1.el7.aarch64.rpma4b2e66327f4d618eeea93ae61f04f67ELBA-2020-5033
Oracle Linux 7 (x86_64) httpd-2.4.6-90.0.1.el7.src.rpmbc0a98576e7d38d69d04c09656f0b4f5ELBA-2020-5033
httpd-2.4.6-90.0.1.el7.x86_64.rpm0e96228e0dfa17a3c63925140f131124ELBA-2020-5033
httpd-devel-2.4.6-90.0.1.el7.x86_64.rpm1e441c0aec73e31441ba95c0cbb1ecacELBA-2020-5033
httpd-manual-2.4.6-90.0.1.el7.noarch.rpmc80c531e14fdd12838ef415e767c7330ELBA-2020-5033
httpd-tools-2.4.6-90.0.1.el7.x86_64.rpm33c96975074abc7752f4fbaddff431b5ELBA-2020-5033
mod_ldap-2.4.6-90.0.1.el7.x86_64.rpme8028ebd24c4a0d5c589cde22dc2e342ELBA-2020-5033
mod_proxy_html-2.4.6-90.0.1.el7.x86_64.rpm4ecc0b613fd252d1c021460e5361db62ELBA-2020-5033
mod_session-2.4.6-90.0.1.el7.x86_64.rpmc1c3b5ecb56316000461d8739fa58fefELBA-2020-5033
mod_ssl-2.4.6-90.0.1.el7.x86_64.rpm00df72dcbcbb8510d62403e80d9be9b2ELBA-2020-5033



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete