Hi,

httpd 2.4.56 fixes CVE-2023-25690 (crit 9.8) and CVE-2023-27522 (high 7.5) but Fedora packages do not name those fixes in the rpm changelog.

These kind of infos are important for admins to know, so it would be wise to always add them and not just write "new version". Of course, this kind of info is vital for any kind of package, but just httpd. So, pls do not forget to add those informations.

2.4.56 has been put to stable already, nothing else to do here. Thanks.

best regards,
Marius Schwarz

_______________________________________________
devel mailing list -- devel@lists.fedoraproject.org
To unsubscribe send an email to devel-le...@lists.fedoraproject.org
Fedora Code of Conduct: 
https://docs.fedoraproject.org/en-US/project/code-of-conduct/
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: 
https://lists.fedoraproject.org/archives/list/devel@lists.fedoraproject.org
Do not reply to spam, report it: 
https://pagure.io/fedora-infrastructure/new_issue

Reply via email to