UbuntuUpdates.org

Package "apache2"

Name: apache2

Description:

Apache HTTP Server

Latest version: 2.4.62-1ubuntu1.1
Release: oracular (24.10)
Level: updates
Repository: main
Homepage: https://httpd.apache.org/

Links


Download "apache2"


Other versions of "apache2" in Oracular

Repository Area Version
base universe 2.4.62-1ubuntu1
base main 2.4.62-1ubuntu1
security main 2.4.62-1ubuntu1.1
security universe 2.4.62-1ubuntu1.1
updates universe 2.4.62-1ubuntu1.1

Packages in group

Deleted packages are displayed in grey.


Changelog

Version: 2.4.62-1ubuntu1.1 2025-04-07 14:07:26 UTC

  apache2 (2.4.62-1ubuntu1.1) oracular-security; urgency=medium

  * SECURITY REGRESSION: Better question mark tracking
    - debian/patches/CVE-2024-38474-regression.patch: improve
      previous patch allowing to avoid [UnsafeAllow3F] for most
      cases in modules/mappers/mod_rewrite.c (LP: #2103723).

 -- Leonidas Da Silva Barbosa <email address hidden> Thu, 03 Apr 2025 06:16:23 -0300

2103723 Fix for CVE-2024-38474 also blocks %3f in appended query strings
CVE-2024-38474 Substitution encoding issue in mod_rewrite in Apache HTTP Server 2.4.59 and earlier allows attacker to execute scripts in directories permitted by th



About   -   Send Feedback to @ubuntu_updates