[ubuntu/natty] apache2 2.2.16-3ubuntu1 (Accepted)

Chuck Short zulcss at ubuntu.com
Fri Oct 15 15:10:29 BST 2010


apache2 (2.2.16-3ubuntu1) natty; urgency=low

  * Merge from debian unstable.  Remaining changes:
    - debian/{control, rules}: Enable PIE hardening.
    - debian/{control, rules, apache2.2-common.ufw.profile}: Add ufw profiles.
    - debian/control: Add bzr tag and point it to our tree.

apache2 (2.2.16-3) unstable; urgency=high

  * CVE-2010-1623: mod_reqtimeout: Fix potential DoS by high memory usage.
  * Fix "Could not reliably determine the server's ..." error message in
    README.Debian, to make it easier to search for it.  Closes: #590528

apache2 (2.2.16-2) unstable; urgency=low

  * Force -j1 for 'make install' to fix occasional FTBFS. Closes: #593036
  * Add a note about the new behaviour of SSL/TLS renegotiation and the new
    directive SSLInsecureRenegotiation to NEWS.Debian. Closes: #593334
  * Support 'graceful' as alias for 'reload' in the init script.
  * In README.Debian, suggest an Apache configuration change to get rid of the
    "Could not reliably determine the server's fully qualified domain name"
    warning, as alternative to changing DNS or /etc/hosts.  Closes: #590528
  * Add notes to README.Debian on how to reduce memory usage.
  * Bump Standards-Version (no changes).

Date: Tue, 12 Oct 2010 11:54:48 +0100
Changed-By: Chuck Short <zulcss at ubuntu.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Signed-By: Chuck Short <chuck.short at canonical.com>
https://launchpad.net/ubuntu/natty/+source/apache2/2.2.16-3ubuntu1
-------------- next part --------------
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Format: 1.8
Date: Tue, 12 Oct 2010 11:54:48 +0100
Source: apache2
Binary: apache2.2-common apache2.2-bin apache2-mpm-worker apache2-mpm-prefork apache2-mpm-event apache2-mpm-itk apache2-utils apache2-suexec apache2-suexec-custom apache2 apache2-doc apache2-prefork-dev apache2-threaded-dev apache2-dbg
Architecture: source
Version: 2.2.16-3ubuntu1
Distribution: natty
Urgency: high
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Chuck Short <zulcss at ubuntu.com>
Description: 
 apache2    - Apache HTTP Server metapackage
 apache2-dbg - Apache debugging symbols
 apache2-doc - Apache HTTP Server documentation
 apache2-mpm-event - Apache HTTP Server - event driven model
 apache2-mpm-itk - multiuser MPM for Apache 2.2
 apache2-mpm-prefork - Apache HTTP Server - traditional non-threaded model
 apache2-mpm-worker - Apache HTTP Server - high speed threaded model
 apache2-prefork-dev - Apache development headers - non-threaded MPM
 apache2-suexec - Standard suexec program for Apache 2 mod_suexec
 apache2-suexec-custom - Configurable suexec program for Apache 2 mod_suexec
 apache2-threaded-dev - Apache development headers - threaded MPM
 apache2-utils - utility programs for webservers
 apache2.2-bin - Apache HTTP Server common binary files
 apache2.2-common - Apache HTTP Server common files
Closes: 590528 593036 593334
Changes: 
 apache2 (2.2.16-3ubuntu1) natty; urgency=low
 .
   * Merge from debian unstable.  Remaining changes:
     - debian/{control, rules}: Enable PIE hardening.
     - debian/{control, rules, apache2.2-common.ufw.profile}: Add ufw profiles.
     - debian/control: Add bzr tag and point it to our tree.
 .
 apache2 (2.2.16-3) unstable; urgency=high
 .
   * CVE-2010-1623: mod_reqtimeout: Fix potential DoS by high memory usage.
   * Fix "Could not reliably determine the server's ..." error message in
     README.Debian, to make it easier to search for it.  Closes: #590528
 .
 apache2 (2.2.16-2) unstable; urgency=low
 .
   * Force -j1 for 'make install' to fix occasional FTBFS. Closes: #593036
   * Add a note about the new behaviour of SSL/TLS renegotiation and the new
     directive SSLInsecureRenegotiation to NEWS.Debian. Closes: #593334
   * Support 'graceful' as alias for 'reload' in the init script.
   * In README.Debian, suggest an Apache configuration change to get rid of the
     "Could not reliably determine the server's fully qualified domain name"
     warning, as alternative to changing DNS or /etc/hosts.  Closes: #590528
   * Add notes to README.Debian on how to reduce memory usage.
   * Bump Standards-Version (no changes).
Checksums-Sha1: 
 d34151f1f534fb9e4db5c836fd490447ac0681bb 1980 apache2_2.2.16-3ubuntu1.dsc
 15befcf921e82c004b0bb5d04379f73f19ddc488 210652 apache2_2.2.16-3ubuntu1.diff.gz
Checksums-Sha256: 
 5ebaf5264dbf5f85e2573a7632fa7afdb7723719fa1bf0ceeea4a3a796cd3295 1980 apache2_2.2.16-3ubuntu1.dsc
 c7b40283192217088b5899e1fa21c8ec652bbad10ac429ecfd94c0b9fb1a9ec6 210652 apache2_2.2.16-3ubuntu1.diff.gz
Files: 
 9858de94a42936874442e714daa86098 1980 httpd optional apache2_2.2.16-3ubuntu1.dsc
 efc3dca8a0cb69ce6c6adca55c13b7f3 210652 httpd optional apache2_2.2.16-3ubuntu1.diff.gz
Original-Maintainer: Debian Apache Maintainers <debian-apache at lists.debian.org>
Original-Vcs-Browser: http://svn.debian.org/wsvn/pkg-apache/trunk/apache2
Original-Vcs-Svn: svn://svn.debian.org/pkg-apache/trunk/apache2

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.10 (GNU/Linux)

iEYEARECAAYFAky2CxcACgkQIHZ33voUATtmsgCfXWRhS1fuSXXTEToWpbLU70wy
S28AoKsREGY0XFkgccAMONpaU2oOxGcR
=oRPO
-----END PGP SIGNATURE-----


More information about the Natty-changes mailing list