pkgsrc/www/apache/patches
grant cb637587aa Updated apache to 1.3.29.
Major changes since 1.3.28:

  Security vulnerabilities

     * CAN-2003-0542 (cve.mitre.org)
       Fix buffer overflows in mod_alias and mod_rewrite which occurred if
       one configured a regular expression with more than 9 captures.

  Bugs fixed

   The following noteworthy bugs were found in Apache 1.3.28 (or earlier)
   and have been fixed in Apache 1.3.29:

     * Within ap_bclose(), ap_pclosesocket() is now called
     * consistently
       for sockets and ap_pclosef() for files.  Also, closesocket()
       is used consistenly to close socket fd's.  The previous
       confusion between socket and file fd's would cause problems
       with some applications now that we proactively close fd's to
       prevent leakage.

     * Fixed mod_usertrack to not get false positive matches on the
       user-tracking cookie's name.

     * Prevent creation of subprocess Zombies when using CGI wrappers
       such as suEXEC and cgiwrap.
2003-11-02 05:36:56 +00:00
..
patch-aa Make this use ${CHOWN}, ${CHMOD}, ${XARGS} and ${FIND}, rather than the 2003-01-20 22:58:26 +00:00
patch-ab
patch-ac
patch-ad
patch-ae Update apache to 1.3.22. Relevant changes from version 1.3.20 include 2001-10-17 19:17:00 +00:00
patch-af Update apache to 1.3.23 with the EAPI patch from mod_ssl-2.8.6-1.3.23. 2002-02-01 16:04:39 +00:00
patch-ag Update apache to 1.3.23 with the EAPI patch from mod_ssl-2.8.6-1.3.23. 2002-02-01 16:04:39 +00:00
patch-ah
patch-ai Update www/apache to 1.3.24 with EAPI patch from mod_ssl-2.8.8-1.3.24. 2002-04-02 14:13:01 +00:00
patch-aj Update apache to 1.3.22. Relevant changes from version 1.3.20 include 2001-10-17 19:17:00 +00:00
patch-ak
patch-al Update www/apache to 1.3.23nb1. Changes from version 1.3.23 include using 2002-02-28 05:45:33 +00:00
patch-am Fix build on arm-elf. 2002-03-28 17:17:08 +00:00
patch-ao Merge changes in packages from the buildlink2 branch that have 2002-08-25 18:38:05 +00:00