pkgsrc/www/apache22
adam 963eccee8c Changes 2.2.27:
*) SECURITY: CVE-2014-0098 (cve.mitre.org)
     Clean up cookie logging with fewer redundant string parsing passes.
     Log only cookies with a value assignment. Prevents segfaults when
     logging truncated cookies.

  *) SECURITY: CVE-2013-6438 (cve.mitre.org)
     mod_dav: Keep track of length of cdata properly when removing
     leading spaces. Eliminates a potential denial of service from
     specifically crafted DAV WRITE requests

  *) core: draft-ietf-httpbis-p1-messaging-23 corrections regarding
     TE/CL conflicts.

  *) mod_proxy_http: Core dumped under high load. PR 50335.

  *) proxy_util: NULL terminate the right buffer in 'send_http_connect'.

  *) mod_proxy: Remove (never documented) <Proxy ~ wildcard-url> syntax which
     is equivalent to <ProxyMatch wildcard-url>.

  *) mod_ldap: Fix a potential memory leak or corruption.

  *) mod_ssl: Do not perform SNI / Host header comparison in case of a
     forward proxy request.

  *) mod_rewrite: Add mod_rewrite.h to the headers installed on Windows.
2014-03-28 11:25:43 +00:00
..
files Import initial SMF support for individual packages. 2014-03-11 14:34:36 +00:00
patches Changes with Apache 2.2.26 2014-02-17 17:32:55 +00:00
buildlink3.mk Recursive PKGREVISION bump for OpenSSL API version bump. 2014-02-12 23:18:26 +00:00
DESCR
distinfo Changes 2.2.27: 2014-03-28 11:25:43 +00:00
Makefile Changes 2.2.27: 2014-03-28 11:25:43 +00:00
MESSAGE
options.mk Changes with Apache 2.2.26 2014-02-17 17:32:55 +00:00
PLIST Changes 2.2.27: 2014-03-28 11:25:43 +00:00