Script 'mail_helper' called by obssrc Hello community, here is the log from the commit of package apache2 for openSUSE:Factory checked in at 2025-07-25 17:03:56 ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Comparing /work/SRC/openSUSE:Factory/apache2 (Old) and /work/SRC/openSUSE:Factory/.apache2.new.13279 (New) ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Package is "apache2" Fri Jul 25 17:03:56 2025 rev:218 rq:1295323 version:2.4.65 Changes: -------- --- /work/SRC/openSUSE:Factory/apache2/apache2.changes 2025-07-20 15:28:12.741935022 +0200 +++ /work/SRC/openSUSE:Factory/.apache2.new.13279/apache2.changes 2025-07-25 17:04:13.878539081 +0200 @@ -1,0 +2,11 @@ +Wed Jul 23 12:39:31 UTC 2025 - pgaj...@suse.com + +- version update to 2.4.65 + *) SECURITY: CVE-2025-54090: Apache HTTP Server: 'RewriteCond expr' + always evaluates to true in 2.4.64 (cve.mitre.org) + A bug in Apache HTTP Server 2.4.64 results in all "RewriteCond + expr ..." tests evaluating as "true". + Users are recommended to upgrade to version 2.4.65, which fixes + the issue. + +------------------------------------------------------------------- Old: ---- httpd-2.4.64.tar.bz2 httpd-2.4.64.tar.bz2.asc New: ---- httpd-2.4.65.tar.bz2 httpd-2.4.65.tar.bz2.asc ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Other differences: ------------------ ++++++ apache2.spec ++++++ --- /var/tmp/diff_new_pack.HxTWwy/_old 2025-07-25 17:04:15.994626883 +0200 +++ /var/tmp/diff_new_pack.HxTWwy/_new 2025-07-25 17:04:15.998627049 +0200 @@ -107,7 +107,7 @@ %define build_http2 1 Name: apache2%{psuffix} -Version: 2.4.64 +Version: 2.4.65 Release: 0 Summary: The Apache HTTPD Server License: Apache-2.0 ++++++ httpd-2.4.64.tar.bz2 -> httpd-2.4.65.tar.bz2 ++++++ /work/SRC/openSUSE:Factory/apache2/httpd-2.4.64.tar.bz2 /work/SRC/openSUSE:Factory/.apache2.new.13279/httpd-2.4.65.tar.bz2 differ: char 11, line 1