Package apache2: Information

  • Default inline alert: Version in the repository: 2.4.43-alt1

Source package: apache2
Version: 2.4.39-alt1
Build time:  Apr 3, 2019, 06:40 PM in the task #226418
Category: System/Servers
Report package bug
License: Apache
Summary: The most widely used Web server on the Internet
Description: 
Apache is a powerful, full-featured, efficient and freely-available
Web server.

List of rpms provided by this srpm:
apache2 (x86_64, i586)
apache2-ab (x86_64, i586)
apache2-ab-debuginfo (x86_64, i586)
apache2-base (x86_64, i586)
apache2-base-debuginfo (x86_64, i586)
apache2-cgi-bin (noarch)
apache2-cgi-bin-printenv (noarch)
apache2-cgi-bin-test-cgi (noarch)
apache2-compat (noarch)
apache2-configs-A1PROXIED (noarch)
apache2-datadirs (noarch)
apache2-devel (x86_64, i586)
apache2-docs (noarch)
apache2-full (noarch)
apache2-htcacheclean (x86_64, i586)
apache2-htcacheclean-control (noarch)
apache2-htcacheclean-debuginfo (x86_64, i586)
apache2-html (noarch)
apache2-htpasswd (x86_64, i586)
apache2-htpasswd-debuginfo (x86_64, i586)
apache2-httpd-event (x86_64, i586)
apache2-httpd-event-debuginfo (x86_64, i586)
apache2-httpd-prefork (x86_64, i586)
apache2-httpd-prefork-debuginfo (x86_64, i586)
apache2-httpd-worker (x86_64, i586)
apache2-httpd-worker-debuginfo (x86_64, i586)
apache2-icons (noarch)
apache2-manual (noarch)
apache2-manual-addons (noarch)
apache2-mod_cache_disk (x86_64, i586)
apache2-mod_cache_disk-debuginfo (x86_64, i586)
apache2-mod_ldap (x86_64, i586)
apache2-mod_ldap-debuginfo (x86_64, i586)
apache2-mod_ssl (x86_64, i586)
apache2-mod_ssl-compat (noarch)
apache2-mod_ssl-debuginfo (x86_64, i586)
apache2-mods (x86_64, i586)
apache2-mods-debuginfo (x86_64, i586)
apache2-suexec (x86_64, i586)
apache2-suexec-debuginfo (x86_64, i586)
rpm-build-apache2 (x86_64, i586)

Maintainer: Anton Farygin


    1. libsasl2-devel
    2. libsasl2-plugin-gssapi
    3. libldap-devel
    4. libexpat-devel
    5. perl-DBM
    6. perl-Digest-SHA1
    7. libssl-devel
    8. pkg-config
    9. libgdbm-devel
    10. sed >= 1:4.2.2-alt1
    11. libpcre-devel
    12. rpm >= 4.0.4-alt100.62
    13. rpm-build-licenses
    14. rpm-macros-condstopstart
    15. rpm-macros-alternatives
    16. rpm-macros-apache2 >= 3.12
    17. rpm-macros-webserver-cgi-bin-control
    18. libaprutil1-devel
    19. webserver-common
    20. openldap
    21. openssl
    22. zlib-devel
    23. libtool >= 3:2.2.6

Last changed


April 2, 2019 Anton Farygin 1:2.4.39-alt1
- 2.4.39
- fixes:
   * Apache HTTP Server privilege escalation from modules scripts. CVE-2019-0211
   * mod_auth_digest access control bypass. CVE-2019-0217
   * mod_ssl access control bypass. CVE-2019-0215
   * Apache httpd URL normalization inconsistincy. CVE-2019-0220
Jan. 25, 2019 Anton Farygin 1:2.4.38-alt1
- 2.4.38
- fixes:
   * important: mod_ssl 2.4.37 remote DoS when used with OpenSSL 1.1.1. CVE-2019-0190
   * low: mod_session_cookie does not respect expiry time. CVE-2018-17199
   * low: DoS for HTTP/2 connections via slow request bodies. CVE-2018-17189
Oct. 24, 2018 Anton Farygin 1:2.4.37-alt1
- 2.4.37
- removed TimeoutStartSec in httpd.service (closes: #27925)
- save to log remoteip instead of remote hostname for fix of work with
  mod_remoteip module (closes: #34974)