ELSA-2024-2278

ELSA-2024-2278 - httpd security update

Type:SECURITY
Severity:MODERATE
Release Date:2024-05-03

Description


[2.4.57-8.0.1]
- Replace index.html with Oracle's index page oracle_index.html.

[2.4.57-8]
- mod_xml2enc: fix media type handling
Resolves: RHEL-17686
- mod_dav: add DavBasePath
Resolves: RHEL-6600

[2.4.57-7]
- Resolves: RHEL-14447 - httpd: mod_macro: out-of-bounds read
vulnerability (CVE-2023-31122)

[2.4.57-6]
- Resolves: RHEL-5071 - mod_dav_fs: add DavLockDBType
- mod_dav_fs: add global mutex around lockdb interaction


Related CVEs


CVE-2023-31122

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By AdvisoryChannel Label
Oracle Linux 9 (aarch64) httpd-2.4.57-8.0.1.el9.src.rpmbd8bde228bd3125e59eb94a21aedb786-ol9_aarch64_appstream
httpd-2.4.57-8.0.1.el9.aarch64.rpm6be24a228ca5ee541fb68cac4ae93d0a-ol9_aarch64_appstream
httpd-core-2.4.57-8.0.1.el9.aarch64.rpmf840708127d33be92cbd117e3bd326b8-ol9_aarch64_appstream
httpd-devel-2.4.57-8.0.1.el9.aarch64.rpmd8981dbf683118685763d271b3e598a1-ol9_aarch64_appstream
httpd-filesystem-2.4.57-8.0.1.el9.noarch.rpm6295eef6fabe1c325ac2dfd86bdbea1d-ol9_aarch64_appstream
httpd-manual-2.4.57-8.0.1.el9.noarch.rpm9023471364c84294340c2cd7a03dab55-ol9_aarch64_appstream
httpd-tools-2.4.57-8.0.1.el9.aarch64.rpmeb3e267049d7e1c3ab3263e3a00adbd2-ol9_aarch64_appstream
mod_ldap-2.4.57-8.0.1.el9.aarch64.rpm2b4f0b91cf95209589de60339e398a59-ol9_aarch64_appstream
mod_lua-2.4.57-8.0.1.el9.aarch64.rpm4e7f78644d3337a3cc32996447afbd07-ol9_aarch64_appstream
mod_proxy_html-2.4.57-8.0.1.el9.aarch64.rpmdc6e1acc4d49bcc0194f3cb15a815205-ol9_aarch64_appstream
mod_session-2.4.57-8.0.1.el9.aarch64.rpmd01ce7a70a655f9bd780d09ecd108fd1-ol9_aarch64_appstream
mod_ssl-2.4.57-8.0.1.el9.aarch64.rpm98d23dda9e45d7d6f248d92f73ea2fff-ol9_aarch64_appstream
Oracle Linux 9 (x86_64) httpd-2.4.57-8.0.1.el9.src.rpmbd8bde228bd3125e59eb94a21aedb786-ol9_x86_64_appstream
httpd-2.4.57-8.0.1.el9.x86_64.rpmd2a118cdaa2a72c81bfb4cfaea1b7b75-ol9_x86_64_appstream
httpd-core-2.4.57-8.0.1.el9.x86_64.rpmfc91096cdf65adfb068cbb4a7e73c034-ol9_x86_64_appstream
httpd-devel-2.4.57-8.0.1.el9.x86_64.rpm852f30d552f2060d36de47e3cfae8c00-ol9_x86_64_appstream
httpd-filesystem-2.4.57-8.0.1.el9.noarch.rpm6295eef6fabe1c325ac2dfd86bdbea1d-ol9_x86_64_appstream
httpd-manual-2.4.57-8.0.1.el9.noarch.rpm9023471364c84294340c2cd7a03dab55-ol9_x86_64_appstream
httpd-tools-2.4.57-8.0.1.el9.x86_64.rpma10c6998a960be994c3b3a5ccca0ae85-ol9_x86_64_appstream
mod_ldap-2.4.57-8.0.1.el9.x86_64.rpmbbd706d7a2cc3ea8e070ee776796a524-ol9_x86_64_appstream
mod_lua-2.4.57-8.0.1.el9.x86_64.rpm53254a98f376b11f47aea1400489a1d6-ol9_x86_64_appstream
mod_proxy_html-2.4.57-8.0.1.el9.x86_64.rpmc080d9aab19898dafbd3f5300f05aec6-ol9_x86_64_appstream
mod_session-2.4.57-8.0.1.el9.x86_64.rpmf16ca365606bfb70f692ac32d2931cf0-ol9_x86_64_appstream
mod_ssl-2.4.57-8.0.1.el9.x86_64.rpmc9ce02c6034640e40c3b99cb27c272d0-ol9_x86_64_appstream



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete