UbuntuUpdates.org

Package "apache2-bin"

Name: apache2-bin

Description:

Apache HTTP Server (modules and other binary files)

Latest version: 2.4.62-1ubuntu1.1
Release: oracular (24.10)
Level: security
Repository: main
Head package: apache2
Homepage: https://httpd.apache.org/

Links


Download "apache2-bin"


Other versions of "apache2-bin" in Oracular

Repository Area Version
base main 2.4.62-1ubuntu1
updates main 2.4.62-1ubuntu1.1

Changelog

Version: 2.4.62-1ubuntu1.1 2025-04-07 12:07:15 UTC

  apache2 (2.4.62-1ubuntu1.1) oracular-security; urgency=medium

  * SECURITY REGRESSION: Better question mark tracking
    - debian/patches/CVE-2024-38474-regression.patch: improve
      previous patch allowing to avoid [UnsafeAllow3F] for most
      cases in modules/mappers/mod_rewrite.c (LP: #2103723).

 -- Leonidas Da Silva Barbosa <email address hidden> Thu, 03 Apr 2025 06:16:23 -0300

2103723 Fix for CVE-2024-38474 also blocks %3f in appended query strings
CVE-2024-38474 Substitution encoding issue in mod_rewrite in Apache HTTP Server 2.4.59 and earlier allows attacker to execute scripts in directories permitted by th



About   -   Send Feedback to @ubuntu_updates