Processing of apache2_2.2.4-1_i386.changes
apache2_2.2.4-1_i386.changes uploaded successfully to localhost along with the files: apache2_2.2.4-1.dsc apache2_2.2.4.orig.tar.gz apache2_2.2.4-1.diff.gz apache2.2-common_2.2.4-1_i386.deb apache2-mpm-worker_2.2.4-1_i386.deb apache2-mpm-prefork_2.2.4-1_i386.deb apache2-mpm-event_2.2.4-1_i386.deb apache2-utils_2.2.4-1_i386.deb apache2-prefork-dev_2.2.4-1_i386.deb apache2-threaded-dev_2.2.4-1_i386.deb apache2-mpm-perchild_2.2.4-1_all.deb apache2_2.2.4-1_all.deb apache2-doc_2.2.4-1_all.deb apache2-src_2.2.4-1_all.deb Greetings, Your Debian queue daemon -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]
apache2 override disparity
There are disparities between your recently accepted upload and the override file for the following file(s): apache2-mpm-event_2.2.4-1_i386.deb: package says section is web, override says net. apache2-mpm-perchild_2.2.4-1_all.deb: package says section is web, override says net. apache2-mpm-prefork_2.2.4-1_i386.deb: package says section is web, override says net. apache2-mpm-worker_2.2.4-1_i386.deb: package says section is web, override says net. apache2-utils_2.2.4-1_i386.deb: package says section is web, override says net. apache2.2-common_2.2.4-1_i386.deb: package says section is web, override says net. apache2_2.2.4-1_all.deb: package says section is web, override says net. Either the package or the override file is incorrect. If you think the override is correct and the package wrong please fix the package so that this disparity is fixed in the next upload. If you feel the override is incorrect then please reply to this mail and explain why. [NB: this is an automatically generated mail; if you replied to one like it before and have not received a response yet, please ignore this mail. Your reply needs to be processed by a human and will be in due course, but until then the installer will send these automated mails; sorry.] -- Debian distribution maintenance software (This message was generated automatically; if you believe that there is a problem with it please contact the archive administrators by mailing [EMAIL PROTECTED]) -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]
apache2_2.2.4-1_i386.changes ACCEPTED
Accepted: apache2-doc_2.2.4-1_all.deb to pool/main/a/apache2/apache2-doc_2.2.4-1_all.deb apache2-mpm-event_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-event_2.2.4-1_i386.deb apache2-mpm-perchild_2.2.4-1_all.deb to pool/main/a/apache2/apache2-mpm-perchild_2.2.4-1_all.deb apache2-mpm-prefork_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-prefork_2.2.4-1_i386.deb apache2-mpm-worker_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-worker_2.2.4-1_i386.deb apache2-prefork-dev_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-prefork-dev_2.2.4-1_i386.deb apache2-src_2.2.4-1_all.deb to pool/main/a/apache2/apache2-src_2.2.4-1_all.deb apache2-threaded-dev_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-threaded-dev_2.2.4-1_i386.deb apache2-utils_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-utils_2.2.4-1_i386.deb apache2.2-common_2.2.4-1_i386.deb to pool/main/a/apache2/apache2.2-common_2.2.4-1_i386.deb apache2_2.2.4-1.diff.gz to pool/main/a/apache2/apache2_2.2.4-1.diff.gz apache2_2.2.4-1.dsc to pool/main/a/apache2/apache2_2.2.4-1.dsc apache2_2.2.4-1_all.deb to pool/main/a/apache2/apache2_2.2.4-1_all.deb apache2_2.2.4.orig.tar.gz to pool/main/a/apache2/apache2_2.2.4.orig.tar.gz Override entries for your package: apache2-doc_2.2.4-1_all.deb - optional doc apache2-mpm-event_2.2.4-1_i386.deb - optional net apache2-mpm-perchild_2.2.4-1_all.deb - optional net apache2-mpm-prefork_2.2.4-1_i386.deb - optional net apache2-mpm-worker_2.2.4-1_i386.deb - optional net apache2-prefork-dev_2.2.4-1_i386.deb - optional devel apache2-src_2.2.4-1_all.deb - extra devel apache2-threaded-dev_2.2.4-1_i386.deb - optional devel apache2-utils_2.2.4-1_i386.deb - optional net apache2.2-common_2.2.4-1_i386.deb - optional net apache2_2.2.4-1.dsc - source net apache2_2.2.4-1_all.deb - optional net Announcing to [EMAIL PROTECTED] Closing bugs: 289289 291841 298689 305933 350286 350822 384682 391817 399056 410331 412580 414429 415698 418536 419539 427050 428887 430116 431048 431125 Thank you for your contribution to Debian. -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]
Bug#404558: marked as done (apache2.conf has Include in wrong place)
Your message dated Sun, 01 Jul 2007 19:02:04 + with message-id [EMAIL PROTECTED] and subject line Bug#305933: fixed in apache2 2.2.4-1 has caused the attached Bug report to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is now your responsibility to reopen the Bug report if necessary, and/or fix the problem forthwith. (NB: If you are a system administrator and have no idea what I am talking about this indicates a serious mail system misconfiguration somewhere. Please contact me immediately.) Debian bug tracking system administrator (administrator, Debian Bugs database) ---BeginMessage--- Package: apache2.2-common Version: 2.2.3-3.2 Severity: minor Tags: patch The Include lines (e.g. Include /etc/apache2/conf.d/) in apache2.conf appear above several configuration items such as ServerTokens and ServerSignature. This prevents local configuration files from being used to override those values except by abusing the sites-enabled directory. The only other option is to modify apache2.conf except this spoils the whole mechanism of keeping local changes separate. The best (and trivial) solution would be to move the non-module Include lines to the bottom of apache2.conf. Thanks. -- William Ono [EMAIL PROTECTED] --- apache2.conf.orig 2006-11-10 18:50:57.0 -0800 +++ apache2.conf2006-12-26 03:01:55.795996750 -0800 @@ -185,15 +185,6 @@ Include /etc/apache2/mods-enabled/*.load Include /etc/apache2/mods-enabled/*.conf -# Include all the user configurations: -Include /etc/apache2/httpd.conf - -# Include ports listing -Include /etc/apache2/ports.conf - -# Include generic snippets of statements -Include /etc/apache2/conf.d/ - # # The following directives define some format nicknames for use with # a CustomLog directive (see below). @@ -664,5 +655,14 @@ #/Location #/IfModule +# Include all the user configurations: +Include /etc/apache2/httpd.conf + +# Include ports listing +Include /etc/apache2/ports.conf + +# Include generic snippets of statements +Include /etc/apache2/conf.d/ + # Include the virtual host configurations: Include /etc/apache2/sites-enabled/ ---End Message--- ---BeginMessage--- Source: apache2 Source-Version: 2.2.4-1 We believe that the bug you reported is fixed in the latest version of apache2, which is due to be installed in the Debian FTP archive: apache2-doc_2.2.4-1_all.deb to pool/main/a/apache2/apache2-doc_2.2.4-1_all.deb apache2-mpm-event_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-event_2.2.4-1_i386.deb apache2-mpm-perchild_2.2.4-1_all.deb to pool/main/a/apache2/apache2-mpm-perchild_2.2.4-1_all.deb apache2-mpm-prefork_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-prefork_2.2.4-1_i386.deb apache2-mpm-worker_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-worker_2.2.4-1_i386.deb apache2-prefork-dev_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-prefork-dev_2.2.4-1_i386.deb apache2-src_2.2.4-1_all.deb to pool/main/a/apache2/apache2-src_2.2.4-1_all.deb apache2-threaded-dev_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-threaded-dev_2.2.4-1_i386.deb apache2-utils_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-utils_2.2.4-1_i386.deb apache2.2-common_2.2.4-1_i386.deb to pool/main/a/apache2/apache2.2-common_2.2.4-1_i386.deb apache2_2.2.4-1.diff.gz to pool/main/a/apache2/apache2_2.2.4-1.diff.gz apache2_2.2.4-1.dsc to pool/main/a/apache2/apache2_2.2.4-1.dsc apache2_2.2.4-1_all.deb to pool/main/a/apache2/apache2_2.2.4-1_all.deb apache2_2.2.4.orig.tar.gz to pool/main/a/apache2/apache2_2.2.4.orig.tar.gz A summary of the changes between this version and the previous one is attached. Thank you for reporting the bug, which will now be closed. If you have further comments please address them to [EMAIL PROTECTED], and the maintainer will reopen the bug report if appropriate. Debian distribution maintenance software pp. Stefan Fritsch [EMAIL PROTECTED] (supplier of updated apache2 package) (This message was generated automatically at their request; if you believe that there is a problem with it please contact the archive administrators by mailing [EMAIL PROTECTED]) -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Format: 1.7 Date: Sun, 01 Jul 2007 19:57:51 +0200 Source: apache2 Binary: apache2-utils apache2-prefork-dev apache2 apache2-mpm-prefork apache2-doc apache2-mpm-event apache2.2-common apache2-mpm-worker apache2-src apache2-threaded-dev apache2-mpm-perchild Architecture: source all i386 Version: 2.2.4-1 Distribution: unstable Urgency: medium Maintainer: Debian Apache Maintainers debian-apache@lists.debian.org Changed-By: Stefan Fritsch [EMAIL PROTECTED] Description: apache2- Next generation, scalable, extendable web server apache2-doc - documentation for apache2 apache2-mpm-event - Event driven model for Apache HTTPD apache2-mpm-perchild - Transitional package - please remove apache2-mpm-prefork - Traditional model for Apache HTTPD
Bug#350286: marked as done (apache2-common: why is the apache2 pid file not in /var/run/apache2?)
Your message dated Sun, 01 Jul 2007 19:02:04 + with message-id [EMAIL PROTECTED] and subject line Bug#350286: fixed in apache2 2.2.4-1 has caused the attached Bug report to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is now your responsibility to reopen the Bug report if necessary, and/or fix the problem forthwith. (NB: If you are a system administrator and have no idea what I am talking about this indicates a serious mail system misconfiguration somewhere. Please contact me immediately.) Debian bug tracking system administrator (administrator, Debian Bugs database) ---BeginMessage--- Package: apache2-common Severity: wishlist Hi, why is apache2 configured to write its pid to /var/run/apache2.pid instead of /var/run/apache2/apache2.pid? Is that an oversight in packaging or am I missing something? Greetings Marc -- System Information: Debian Release: testing/unstable APT prefers unstable APT policy: (500, 'unstable'), (500, 'stable') Architecture: i386 (i686) Shell: /bin/sh linked to /bin/bash Kernel: Linux 2.6.15.1-zgsrv Locale: LANG=C, LC_CTYPE=de_DE (charmap=ISO-8859-1) ---End Message--- ---BeginMessage--- Source: apache2 Source-Version: 2.2.4-1 We believe that the bug you reported is fixed in the latest version of apache2, which is due to be installed in the Debian FTP archive: apache2-doc_2.2.4-1_all.deb to pool/main/a/apache2/apache2-doc_2.2.4-1_all.deb apache2-mpm-event_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-event_2.2.4-1_i386.deb apache2-mpm-perchild_2.2.4-1_all.deb to pool/main/a/apache2/apache2-mpm-perchild_2.2.4-1_all.deb apache2-mpm-prefork_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-prefork_2.2.4-1_i386.deb apache2-mpm-worker_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-worker_2.2.4-1_i386.deb apache2-prefork-dev_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-prefork-dev_2.2.4-1_i386.deb apache2-src_2.2.4-1_all.deb to pool/main/a/apache2/apache2-src_2.2.4-1_all.deb apache2-threaded-dev_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-threaded-dev_2.2.4-1_i386.deb apache2-utils_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-utils_2.2.4-1_i386.deb apache2.2-common_2.2.4-1_i386.deb to pool/main/a/apache2/apache2.2-common_2.2.4-1_i386.deb apache2_2.2.4-1.diff.gz to pool/main/a/apache2/apache2_2.2.4-1.diff.gz apache2_2.2.4-1.dsc to pool/main/a/apache2/apache2_2.2.4-1.dsc apache2_2.2.4-1_all.deb to pool/main/a/apache2/apache2_2.2.4-1_all.deb apache2_2.2.4.orig.tar.gz to pool/main/a/apache2/apache2_2.2.4.orig.tar.gz A summary of the changes between this version and the previous one is attached. Thank you for reporting the bug, which will now be closed. If you have further comments please address them to [EMAIL PROTECTED], and the maintainer will reopen the bug report if appropriate. Debian distribution maintenance software pp. Stefan Fritsch [EMAIL PROTECTED] (supplier of updated apache2 package) (This message was generated automatically at their request; if you believe that there is a problem with it please contact the archive administrators by mailing [EMAIL PROTECTED]) -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Format: 1.7 Date: Sun, 01 Jul 2007 19:57:51 +0200 Source: apache2 Binary: apache2-utils apache2-prefork-dev apache2 apache2-mpm-prefork apache2-doc apache2-mpm-event apache2.2-common apache2-mpm-worker apache2-src apache2-threaded-dev apache2-mpm-perchild Architecture: source all i386 Version: 2.2.4-1 Distribution: unstable Urgency: medium Maintainer: Debian Apache Maintainers debian-apache@lists.debian.org Changed-By: Stefan Fritsch [EMAIL PROTECTED] Description: apache2- Next generation, scalable, extendable web server apache2-doc - documentation for apache2 apache2-mpm-event - Event driven model for Apache HTTPD apache2-mpm-perchild - Transitional package - please remove apache2-mpm-prefork - Traditional model for Apache HTTPD apache2-mpm-worker - High speed threaded model for Apache HTTPD apache2-prefork-dev - development headers for apache2 apache2-src - Apache source code apache2-threaded-dev - development headers for apache2 apache2-utils - utility programs for webservers apache2.2-common - Next generation, scalable, extendable web server Closes: 289289 291841 298689 305933 350286 350822 384682 391817 399056 410331 412580 414429 415698 418536 419539 427050 428887 430116 431048 431125 Changes: apache2 (2.2.4-1) unstable; urgency=medium . [ Stefan Fritsch ] * Urgency medium for security fix * Fix CVE-2007-1863: DoS in mod_cache * New upstream version (Closes: #427050) - Fixes proxy: error reading status line from remote server (Closes: #410331) * Fix CVE-2007-1862: mod_mem_cache DoS (introduced in 2.2.4) * Change logrotate script to use reload instead of restart. (Closes: #298689) * chmod o-rx /var/log/apache2 (Closes: #291841) * chmod o-x suexec (Closes: #431048) *
Bug#412580: marked as done (Apache reporting incorrect header values for error 500 documents)
Your message dated Sun, 01 Jul 2007 19:02:04 + with message-id [EMAIL PROTECTED] and subject line Bug#412580: fixed in apache2 2.2.4-1 has caused the attached Bug report to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is now your responsibility to reopen the Bug report if necessary, and/or fix the problem forthwith. (NB: If you are a system administrator and have no idea what I am talking about this indicates a serious mail system misconfiguration somewhere. Please contact me immediately.) Debian bug tracking system administrator (administrator, Debian Bugs database) ---BeginMessage--- Package: apache2.2-common Version: 2.2.3-3.3 Severity: important The version of Apache which ships with Etch sends back the document specified in the ErrorDocument directive with a Content-length header of 0 and a Content-type header with a value other than text/html, which causes the browser to either display an empty document or offer to download the (empty) document to the file system on the client machine. Apache on earlier versions of Debian did not exhibit this behavior, though I'm not sure when it was introduced (hadn't used Debian for a while, and I'm in the process of building a new Debian server). This bug prevents the server from informing the user what went wrong and whom to contact when a script fails unexpectedly. This is probably related to Apache bug 39710 (http://issues.apache.org/bugzilla/show_bug.cgi?id=39710). To reproduce: 1. Install the following script as barf.py in the /cgi-bin directory: #!/usr/bin/python raise Exception(barfing) 2. Make sure the ErrorDocument 500 directive points to a real document. 3. Invoke the URL for the script: $ curl -i http://localhost/cgi-bin/barf.py HTTP/1.1 500 Internal Server Error Date: Mon, 26 Feb 2007 21:16:17 GMT Server: Apache/2.2.3 (Debian) Content-Length: 0 Connection: close Content-Type: text/x-python On all my other servers, Content-length is non-zero and Content-type is text/html. -- Bob Kline http://www.rksystems.com mailto:[EMAIL PROTECTED] ---End Message--- ---BeginMessage--- Source: apache2 Source-Version: 2.2.4-1 We believe that the bug you reported is fixed in the latest version of apache2, which is due to be installed in the Debian FTP archive: apache2-doc_2.2.4-1_all.deb to pool/main/a/apache2/apache2-doc_2.2.4-1_all.deb apache2-mpm-event_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-event_2.2.4-1_i386.deb apache2-mpm-perchild_2.2.4-1_all.deb to pool/main/a/apache2/apache2-mpm-perchild_2.2.4-1_all.deb apache2-mpm-prefork_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-prefork_2.2.4-1_i386.deb apache2-mpm-worker_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-worker_2.2.4-1_i386.deb apache2-prefork-dev_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-prefork-dev_2.2.4-1_i386.deb apache2-src_2.2.4-1_all.deb to pool/main/a/apache2/apache2-src_2.2.4-1_all.deb apache2-threaded-dev_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-threaded-dev_2.2.4-1_i386.deb apache2-utils_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-utils_2.2.4-1_i386.deb apache2.2-common_2.2.4-1_i386.deb to pool/main/a/apache2/apache2.2-common_2.2.4-1_i386.deb apache2_2.2.4-1.diff.gz to pool/main/a/apache2/apache2_2.2.4-1.diff.gz apache2_2.2.4-1.dsc to pool/main/a/apache2/apache2_2.2.4-1.dsc apache2_2.2.4-1_all.deb to pool/main/a/apache2/apache2_2.2.4-1_all.deb apache2_2.2.4.orig.tar.gz to pool/main/a/apache2/apache2_2.2.4.orig.tar.gz A summary of the changes between this version and the previous one is attached. Thank you for reporting the bug, which will now be closed. If you have further comments please address them to [EMAIL PROTECTED], and the maintainer will reopen the bug report if appropriate. Debian distribution maintenance software pp. Stefan Fritsch [EMAIL PROTECTED] (supplier of updated apache2 package) (This message was generated automatically at their request; if you believe that there is a problem with it please contact the archive administrators by mailing [EMAIL PROTECTED]) -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Format: 1.7 Date: Sun, 01 Jul 2007 19:57:51 +0200 Source: apache2 Binary: apache2-utils apache2-prefork-dev apache2 apache2-mpm-prefork apache2-doc apache2-mpm-event apache2.2-common apache2-mpm-worker apache2-src apache2-threaded-dev apache2-mpm-perchild Architecture: source all i386 Version: 2.2.4-1 Distribution: unstable Urgency: medium Maintainer: Debian Apache Maintainers debian-apache@lists.debian.org Changed-By: Stefan Fritsch [EMAIL PROTECTED] Description: apache2- Next generation, scalable, extendable web server apache2-doc - documentation for apache2 apache2-mpm-event - Event driven model for Apache HTTPD apache2-mpm-perchild - Transitional package - please remove apache2-mpm-prefork - Traditional model for Apache HTTPD apache2-mpm-worker - High speed threaded model for Apache HTTPD
Bug#418536: marked as done (apache2 can't be removed if stoppped)
Your message dated Sun, 01 Jul 2007 19:02:04 + with message-id [EMAIL PROTECTED] and subject line Bug#418536: fixed in apache2 2.2.4-1 has caused the attached Bug report to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is now your responsibility to reopen the Bug report if necessary, and/or fix the problem forthwith. (NB: If you are a system administrator and have no idea what I am talking about this indicates a serious mail system misconfiguration somewhere. Please contact me immediately.) Debian bug tracking system administrator (administrator, Debian Bugs database) ---BeginMessage--- Package: apache2.2-common Version: 2.2.3-4 Trying to remove apache2-mpm-worker with the server stopped does not work: Desinstalando apache2-mpm-worker ... Stopping web server (apache2)... failed! invoke-rc.d: initscript apache2, action stop failed. dpkg: error al procesar apache2-mpm-worker (--remove): el subproceso pre-removal script devolvió el código de salida de error 1 Se encontraron errores al procesar: apache2-mpm-worker E: Sub-process /usr/bin/dpkg returned an error code (1) That forced me to start the server, because I needed it removed anyway. Solutions: either allow /etc/init.d/apache2 (package apache2.2-common) to success if there is no apache2 process to stop, or modify pre-removal script (package apache2-mpm-worker) to work if server is not running. I think the last would must be done in more packages, like the prefork one. BTW, congratulations for etch's release :) Noel Torres er Envite ---End Message--- ---BeginMessage--- Source: apache2 Source-Version: 2.2.4-1 We believe that the bug you reported is fixed in the latest version of apache2, which is due to be installed in the Debian FTP archive: apache2-doc_2.2.4-1_all.deb to pool/main/a/apache2/apache2-doc_2.2.4-1_all.deb apache2-mpm-event_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-event_2.2.4-1_i386.deb apache2-mpm-perchild_2.2.4-1_all.deb to pool/main/a/apache2/apache2-mpm-perchild_2.2.4-1_all.deb apache2-mpm-prefork_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-prefork_2.2.4-1_i386.deb apache2-mpm-worker_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-worker_2.2.4-1_i386.deb apache2-prefork-dev_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-prefork-dev_2.2.4-1_i386.deb apache2-src_2.2.4-1_all.deb to pool/main/a/apache2/apache2-src_2.2.4-1_all.deb apache2-threaded-dev_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-threaded-dev_2.2.4-1_i386.deb apache2-utils_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-utils_2.2.4-1_i386.deb apache2.2-common_2.2.4-1_i386.deb to pool/main/a/apache2/apache2.2-common_2.2.4-1_i386.deb apache2_2.2.4-1.diff.gz to pool/main/a/apache2/apache2_2.2.4-1.diff.gz apache2_2.2.4-1.dsc to pool/main/a/apache2/apache2_2.2.4-1.dsc apache2_2.2.4-1_all.deb to pool/main/a/apache2/apache2_2.2.4-1_all.deb apache2_2.2.4.orig.tar.gz to pool/main/a/apache2/apache2_2.2.4.orig.tar.gz A summary of the changes between this version and the previous one is attached. Thank you for reporting the bug, which will now be closed. If you have further comments please address them to [EMAIL PROTECTED], and the maintainer will reopen the bug report if appropriate. Debian distribution maintenance software pp. Stefan Fritsch [EMAIL PROTECTED] (supplier of updated apache2 package) (This message was generated automatically at their request; if you believe that there is a problem with it please contact the archive administrators by mailing [EMAIL PROTECTED]) -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Format: 1.7 Date: Sun, 01 Jul 2007 19:57:51 +0200 Source: apache2 Binary: apache2-utils apache2-prefork-dev apache2 apache2-mpm-prefork apache2-doc apache2-mpm-event apache2.2-common apache2-mpm-worker apache2-src apache2-threaded-dev apache2-mpm-perchild Architecture: source all i386 Version: 2.2.4-1 Distribution: unstable Urgency: medium Maintainer: Debian Apache Maintainers debian-apache@lists.debian.org Changed-By: Stefan Fritsch [EMAIL PROTECTED] Description: apache2- Next generation, scalable, extendable web server apache2-doc - documentation for apache2 apache2-mpm-event - Event driven model for Apache HTTPD apache2-mpm-perchild - Transitional package - please remove apache2-mpm-prefork - Traditional model for Apache HTTPD apache2-mpm-worker - High speed threaded model for Apache HTTPD apache2-prefork-dev - development headers for apache2 apache2-src - Apache source code apache2-threaded-dev - development headers for apache2 apache2-utils - utility programs for webservers apache2.2-common - Next generation, scalable, extendable web server Closes: 289289 291841 298689 305933 350286 350822 384682 391817 399056 410331 412580 414429 415698 418536 419539 427050 428887 430116 431048 431125 Changes: apache2 (2.2.4-1) unstable; urgency=medium . [ Stefan Fritsch ] * Urgency medium for security
Bug#431048: marked as done (suexec permissions are DANGEROUS)
Your message dated Sun, 01 Jul 2007 19:02:04 + with message-id [EMAIL PROTECTED] and subject line Bug#431048: fixed in apache2 2.2.4-1 has caused the attached Bug report to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is now your responsibility to reopen the Bug report if necessary, and/or fix the problem forthwith. (NB: If you are a system administrator and have no idea what I am talking about this indicates a serious mail system misconfiguration somewhere. Please contact me immediately.) Debian bug tracking system administrator (administrator, Debian Bugs database) ---BeginMessage--- Package: apache2.2-common Version: 2.2.3-4 Excuse me for being a little irate here but unless I'm being rather stupid this morning, and I have asked for a second opinion, the default permissions for suexec are not only wrong but very DANGEROUS. Andreas Fuchs warned about this in the last message of #395828 but this message was seemingly ignored. The permissions that were given on my new amd64 Etch installation were... -rwsr-xr-x 1 root root 12472 2007-03-27 14:03 /usr/lib/apache2/suexec This allows ANYONE to run suexec as root. I can't believe this has slipped through. As the Apache docs very clearly state over at http://httpd.apache.org/docs/2.2/suexec.html, they should be set with... chgrp www-data /usr/lib/apache2/suexec chmod 4750 /usr/lib/apache2/suexec Which would result in... -rwsr-x--- 1 root www-data 12472 2007-03-27 14:03 /usr/lib/apache2/suexec Now only www-data can run suexec as root. PLEASE fix this immediately. Regards, James ---End Message--- ---BeginMessage--- Source: apache2 Source-Version: 2.2.4-1 We believe that the bug you reported is fixed in the latest version of apache2, which is due to be installed in the Debian FTP archive: apache2-doc_2.2.4-1_all.deb to pool/main/a/apache2/apache2-doc_2.2.4-1_all.deb apache2-mpm-event_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-event_2.2.4-1_i386.deb apache2-mpm-perchild_2.2.4-1_all.deb to pool/main/a/apache2/apache2-mpm-perchild_2.2.4-1_all.deb apache2-mpm-prefork_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-prefork_2.2.4-1_i386.deb apache2-mpm-worker_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-worker_2.2.4-1_i386.deb apache2-prefork-dev_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-prefork-dev_2.2.4-1_i386.deb apache2-src_2.2.4-1_all.deb to pool/main/a/apache2/apache2-src_2.2.4-1_all.deb apache2-threaded-dev_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-threaded-dev_2.2.4-1_i386.deb apache2-utils_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-utils_2.2.4-1_i386.deb apache2.2-common_2.2.4-1_i386.deb to pool/main/a/apache2/apache2.2-common_2.2.4-1_i386.deb apache2_2.2.4-1.diff.gz to pool/main/a/apache2/apache2_2.2.4-1.diff.gz apache2_2.2.4-1.dsc to pool/main/a/apache2/apache2_2.2.4-1.dsc apache2_2.2.4-1_all.deb to pool/main/a/apache2/apache2_2.2.4-1_all.deb apache2_2.2.4.orig.tar.gz to pool/main/a/apache2/apache2_2.2.4.orig.tar.gz A summary of the changes between this version and the previous one is attached. Thank you for reporting the bug, which will now be closed. If you have further comments please address them to [EMAIL PROTECTED], and the maintainer will reopen the bug report if appropriate. Debian distribution maintenance software pp. Stefan Fritsch [EMAIL PROTECTED] (supplier of updated apache2 package) (This message was generated automatically at their request; if you believe that there is a problem with it please contact the archive administrators by mailing [EMAIL PROTECTED]) -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Format: 1.7 Date: Sun, 01 Jul 2007 19:57:51 +0200 Source: apache2 Binary: apache2-utils apache2-prefork-dev apache2 apache2-mpm-prefork apache2-doc apache2-mpm-event apache2.2-common apache2-mpm-worker apache2-src apache2-threaded-dev apache2-mpm-perchild Architecture: source all i386 Version: 2.2.4-1 Distribution: unstable Urgency: medium Maintainer: Debian Apache Maintainers debian-apache@lists.debian.org Changed-By: Stefan Fritsch [EMAIL PROTECTED] Description: apache2- Next generation, scalable, extendable web server apache2-doc - documentation for apache2 apache2-mpm-event - Event driven model for Apache HTTPD apache2-mpm-perchild - Transitional package - please remove apache2-mpm-prefork - Traditional model for Apache HTTPD apache2-mpm-worker - High speed threaded model for Apache HTTPD apache2-prefork-dev - development headers for apache2 apache2-src - Apache source code apache2-threaded-dev - development headers for apache2 apache2-utils - utility programs for webservers apache2.2-common - Next generation, scalable, extendable web server Closes: 289289 291841 298689 305933 350286 350822 384682 391817 399056 410331 412580 414429 415698 418536 419539 427050 428887 430116 431048 431125 Changes: apache2 (2.2.4-1) unstable; urgency=medium . [ Stefan Fritsch ]
Bug#314878: marked as done (apache2-common: Do 'reload' instead of 'restart' in logrotate.d/apache2)
Your message dated Sun, 01 Jul 2007 19:02:03 + with message-id [EMAIL PROTECTED] and subject line Bug#298689: fixed in apache2 2.2.4-1 has caused the attached Bug report to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is now your responsibility to reopen the Bug report if necessary, and/or fix the problem forthwith. (NB: If you are a system administrator and have no idea what I am talking about this indicates a serious mail system misconfiguration somewhere. Please contact me immediately.) Debian bug tracking system administrator (administrator, Debian Bugs database) ---BeginMessage--- Package: apache2-common Severity: important Version: 2.0.54-4 In /etc/logrotate.d/apache2, `/etc/init.d/apache2 restart` is invoked to rotate Apache2 logs. `/etc/init.d/apachw2 restart` stops and starts Apache2, not reloads. There are 2 problems in this situation: 1. Web service by Apache2 is stopped in a short time. 2. Web service by Apache2 is NOT started if Apache2 configuration is broken. Use `/etc/init.d/apache2 reload` in this situation. -- -- Name: SATOH Fumiyasu -- Home: http://www.sfo.jp (in Japanese only) -- Mail: fumiya at net-thrust.com, samba.gr.jp, namazu.org or ... ---End Message--- ---BeginMessage--- Source: apache2 Source-Version: 2.2.4-1 We believe that the bug you reported is fixed in the latest version of apache2, which is due to be installed in the Debian FTP archive: apache2-doc_2.2.4-1_all.deb to pool/main/a/apache2/apache2-doc_2.2.4-1_all.deb apache2-mpm-event_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-event_2.2.4-1_i386.deb apache2-mpm-perchild_2.2.4-1_all.deb to pool/main/a/apache2/apache2-mpm-perchild_2.2.4-1_all.deb apache2-mpm-prefork_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-prefork_2.2.4-1_i386.deb apache2-mpm-worker_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-worker_2.2.4-1_i386.deb apache2-prefork-dev_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-prefork-dev_2.2.4-1_i386.deb apache2-src_2.2.4-1_all.deb to pool/main/a/apache2/apache2-src_2.2.4-1_all.deb apache2-threaded-dev_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-threaded-dev_2.2.4-1_i386.deb apache2-utils_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-utils_2.2.4-1_i386.deb apache2.2-common_2.2.4-1_i386.deb to pool/main/a/apache2/apache2.2-common_2.2.4-1_i386.deb apache2_2.2.4-1.diff.gz to pool/main/a/apache2/apache2_2.2.4-1.diff.gz apache2_2.2.4-1.dsc to pool/main/a/apache2/apache2_2.2.4-1.dsc apache2_2.2.4-1_all.deb to pool/main/a/apache2/apache2_2.2.4-1_all.deb apache2_2.2.4.orig.tar.gz to pool/main/a/apache2/apache2_2.2.4.orig.tar.gz A summary of the changes between this version and the previous one is attached. Thank you for reporting the bug, which will now be closed. If you have further comments please address them to [EMAIL PROTECTED], and the maintainer will reopen the bug report if appropriate. Debian distribution maintenance software pp. Stefan Fritsch [EMAIL PROTECTED] (supplier of updated apache2 package) (This message was generated automatically at their request; if you believe that there is a problem with it please contact the archive administrators by mailing [EMAIL PROTECTED]) -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Format: 1.7 Date: Sun, 01 Jul 2007 19:57:51 +0200 Source: apache2 Binary: apache2-utils apache2-prefork-dev apache2 apache2-mpm-prefork apache2-doc apache2-mpm-event apache2.2-common apache2-mpm-worker apache2-src apache2-threaded-dev apache2-mpm-perchild Architecture: source all i386 Version: 2.2.4-1 Distribution: unstable Urgency: medium Maintainer: Debian Apache Maintainers debian-apache@lists.debian.org Changed-By: Stefan Fritsch [EMAIL PROTECTED] Description: apache2- Next generation, scalable, extendable web server apache2-doc - documentation for apache2 apache2-mpm-event - Event driven model for Apache HTTPD apache2-mpm-perchild - Transitional package - please remove apache2-mpm-prefork - Traditional model for Apache HTTPD apache2-mpm-worker - High speed threaded model for Apache HTTPD apache2-prefork-dev - development headers for apache2 apache2-src - Apache source code apache2-threaded-dev - development headers for apache2 apache2-utils - utility programs for webservers apache2.2-common - Next generation, scalable, extendable web server Closes: 289289 291841 298689 305933 350286 350822 384682 391817 399056 410331 412580 414429 415698 418536 419539 427050 428887 430116 431048 431125 Changes: apache2 (2.2.4-1) unstable; urgency=medium . [ Stefan Fritsch ] * Urgency medium for security fix * Fix CVE-2007-1863: DoS in mod_cache * New upstream version (Closes: #427050) - Fixes proxy: error reading status line from remote server (Closes: #410331) * Fix CVE-2007-1862: mod_mem_cache DoS (introduced in 2.2.4) * Change logrotate script to use reload instead of restart. (Closes:
Bug#325594: marked as done (apache2: Unable to restart after security upgrade)
Your message dated Sun, 01 Jul 2007 19:02:03 + with message-id [EMAIL PROTECTED] and subject line Bug#298689: fixed in apache2 2.2.4-1 has caused the attached Bug report to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is now your responsibility to reopen the Bug report if necessary, and/or fix the problem forthwith. (NB: If you are a system administrator and have no idea what I am talking about this indicates a serious mail system misconfiguration somewhere. Please contact me immediately.) Debian bug tracking system administrator (administrator, Debian Bugs database) ---BeginMessage--- Package: apache2 Version: 2.0.54-4 Severity: normal Hi, After I installed this security upgrade, Apache2 couldn't restart anymore. Setting up libapache2-mod-php4 (4.3.10-16) ... Forcing reload of web server: Apache2(98)Address already in use: make_sock: could not bind to address [::]:443 no listening sockets available, shutting down Unable to open logs invoke-rc.d: initscript apache2, action force-reload failed. # invoke-rc.d apache2 start Starting web server: Apache2(98)Address already in use: make_sock: could not bind to address [::]:443 no listening sockets available, shutting down Unable to open logs invoke-rc.d: initscript apache2, action start failed. # -- System Information: Debian Release: testing/unstable APT prefers testing APT policy: (500, 'testing'), (500, 'stable') Architecture: i386 (i686) Shell: /bin/sh linked to /bin/bash Kernel: Linux 2.6.8-2-686-smp Locale: LANG=C, LC_CTYPE=C (charmap=ANSI_X3.4-1968) Versions of packages apache2 depends on: ii apache2-mpm-prefork 2.0.54-4 traditional model for Apache2 apache2 recommends no packages. -- no debconf information ---End Message--- ---BeginMessage--- Source: apache2 Source-Version: 2.2.4-1 We believe that the bug you reported is fixed in the latest version of apache2, which is due to be installed in the Debian FTP archive: apache2-doc_2.2.4-1_all.deb to pool/main/a/apache2/apache2-doc_2.2.4-1_all.deb apache2-mpm-event_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-event_2.2.4-1_i386.deb apache2-mpm-perchild_2.2.4-1_all.deb to pool/main/a/apache2/apache2-mpm-perchild_2.2.4-1_all.deb apache2-mpm-prefork_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-prefork_2.2.4-1_i386.deb apache2-mpm-worker_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-worker_2.2.4-1_i386.deb apache2-prefork-dev_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-prefork-dev_2.2.4-1_i386.deb apache2-src_2.2.4-1_all.deb to pool/main/a/apache2/apache2-src_2.2.4-1_all.deb apache2-threaded-dev_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-threaded-dev_2.2.4-1_i386.deb apache2-utils_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-utils_2.2.4-1_i386.deb apache2.2-common_2.2.4-1_i386.deb to pool/main/a/apache2/apache2.2-common_2.2.4-1_i386.deb apache2_2.2.4-1.diff.gz to pool/main/a/apache2/apache2_2.2.4-1.diff.gz apache2_2.2.4-1.dsc to pool/main/a/apache2/apache2_2.2.4-1.dsc apache2_2.2.4-1_all.deb to pool/main/a/apache2/apache2_2.2.4-1_all.deb apache2_2.2.4.orig.tar.gz to pool/main/a/apache2/apache2_2.2.4.orig.tar.gz A summary of the changes between this version and the previous one is attached. Thank you for reporting the bug, which will now be closed. If you have further comments please address them to [EMAIL PROTECTED], and the maintainer will reopen the bug report if appropriate. Debian distribution maintenance software pp. Stefan Fritsch [EMAIL PROTECTED] (supplier of updated apache2 package) (This message was generated automatically at their request; if you believe that there is a problem with it please contact the archive administrators by mailing [EMAIL PROTECTED]) -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Format: 1.7 Date: Sun, 01 Jul 2007 19:57:51 +0200 Source: apache2 Binary: apache2-utils apache2-prefork-dev apache2 apache2-mpm-prefork apache2-doc apache2-mpm-event apache2.2-common apache2-mpm-worker apache2-src apache2-threaded-dev apache2-mpm-perchild Architecture: source all i386 Version: 2.2.4-1 Distribution: unstable Urgency: medium Maintainer: Debian Apache Maintainers debian-apache@lists.debian.org Changed-By: Stefan Fritsch [EMAIL PROTECTED] Description: apache2- Next generation, scalable, extendable web server apache2-doc - documentation for apache2 apache2-mpm-event - Event driven model for Apache HTTPD apache2-mpm-perchild - Transitional package - please remove apache2-mpm-prefork - Traditional model for Apache HTTPD apache2-mpm-worker - High speed threaded model for Apache HTTPD apache2-prefork-dev - development headers for apache2 apache2-src - Apache source code apache2-threaded-dev - development headers for apache2 apache2-utils - utility programs for webservers apache2.2-common - Next generation, scalable, extendable web server Closes: 289289 291841 298689 305933 350286 350822 384682 391817
Bug#429516: marked as done (apache2-common logrotate : could reload be used instead of restart ?)
Your message dated Sun, 01 Jul 2007 19:02:03 + with message-id [EMAIL PROTECTED] and subject line Bug#298689: fixed in apache2 2.2.4-1 has caused the attached Bug report to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is now your responsibility to reopen the Bug report if necessary, and/or fix the problem forthwith. (NB: If you are a system administrator and have no idea what I am talking about this indicates a serious mail system misconfiguration somewhere. Please contact me immediately.) Debian bug tracking system administrator (administrator, Debian Bugs database) ---BeginMessage--- Package: apache2-commonVersion: 2.0.54-5sarge1Package: apache2.2-commonVersion: 2.2.3-4In the logrotate config file for Apache (/etc/logrotate.d/apache2), the restart command is used to tell Apache to use the new logfiles after they have been rotated. This is kind of harsh since it's a full stop start of the server. It also causes problems for people using SSL certificates for which the key is encrypted, and thus needs a passphrase to be typed in everytime Apache starts.Here's the relevant part of /etc/logrotate.d/apache2 :postrotate if [ -f /var/run/apache2.pid ]; then /etc/init.d/apache2 restart /dev/nullfi endscriptMay I suggest that restart be changed for reload, which has the same effect regarding logfile rotation, does not require the passphrase to be re-entered, and is less harsh overall.postrotateif [ -f /var/run/apache2.pid ]; then/etc/init.d/apache2 reload /dev/nullfiendscript I am using Debian 3.1 (sarge) with Apache2 and also Debian 4.0 (etch) with Apache 2.2.Thank you. _ News, entertainment and everything you care about at Live.com. Get it now! http://www.live.com/getstarted.aspx---End Message--- ---BeginMessage--- Source: apache2 Source-Version: 2.2.4-1 We believe that the bug you reported is fixed in the latest version of apache2, which is due to be installed in the Debian FTP archive: apache2-doc_2.2.4-1_all.deb to pool/main/a/apache2/apache2-doc_2.2.4-1_all.deb apache2-mpm-event_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-event_2.2.4-1_i386.deb apache2-mpm-perchild_2.2.4-1_all.deb to pool/main/a/apache2/apache2-mpm-perchild_2.2.4-1_all.deb apache2-mpm-prefork_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-prefork_2.2.4-1_i386.deb apache2-mpm-worker_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-worker_2.2.4-1_i386.deb apache2-prefork-dev_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-prefork-dev_2.2.4-1_i386.deb apache2-src_2.2.4-1_all.deb to pool/main/a/apache2/apache2-src_2.2.4-1_all.deb apache2-threaded-dev_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-threaded-dev_2.2.4-1_i386.deb apache2-utils_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-utils_2.2.4-1_i386.deb apache2.2-common_2.2.4-1_i386.deb to pool/main/a/apache2/apache2.2-common_2.2.4-1_i386.deb apache2_2.2.4-1.diff.gz to pool/main/a/apache2/apache2_2.2.4-1.diff.gz apache2_2.2.4-1.dsc to pool/main/a/apache2/apache2_2.2.4-1.dsc apache2_2.2.4-1_all.deb to pool/main/a/apache2/apache2_2.2.4-1_all.deb apache2_2.2.4.orig.tar.gz to pool/main/a/apache2/apache2_2.2.4.orig.tar.gz A summary of the changes between this version and the previous one is attached. Thank you for reporting the bug, which will now be closed. If you have further comments please address them to [EMAIL PROTECTED], and the maintainer will reopen the bug report if appropriate. Debian distribution maintenance software pp. Stefan Fritsch [EMAIL PROTECTED] (supplier of updated apache2 package) (This message was generated automatically at their request; if you believe that there is a problem with it please contact the archive administrators by mailing [EMAIL PROTECTED]) -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Format: 1.7 Date: Sun, 01 Jul 2007 19:57:51 +0200 Source: apache2 Binary: apache2-utils apache2-prefork-dev apache2 apache2-mpm-prefork apache2-doc apache2-mpm-event apache2.2-common apache2-mpm-worker apache2-src apache2-threaded-dev apache2-mpm-perchild Architecture: source all i386 Version: 2.2.4-1 Distribution: unstable Urgency: medium Maintainer: Debian Apache Maintainers debian-apache@lists.debian.org Changed-By: Stefan Fritsch [EMAIL PROTECTED] Description: apache2- Next generation, scalable, extendable web server apache2-doc - documentation for apache2 apache2-mpm-event - Event driven model for Apache HTTPD apache2-mpm-perchild - Transitional package - please remove apache2-mpm-prefork - Traditional model for Apache HTTPD apache2-mpm-worker - High speed threaded model for Apache HTTPD apache2-prefork-dev - development headers for apache2 apache2-src - Apache source code apache2-threaded-dev - development
Bug#391817: marked as done (apache2-mpm-prefork: /usr/sbin/apache2 -h doesn't list the -X option)
Your message dated Sun, 01 Jul 2007 19:02:04 + with message-id [EMAIL PROTECTED] and subject line Bug#391817: fixed in apache2 2.2.4-1 has caused the attached Bug report to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is now your responsibility to reopen the Bug report if necessary, and/or fix the problem forthwith. (NB: If you are a system administrator and have no idea what I am talking about this indicates a serious mail system misconfiguration somewhere. Please contact me immediately.) Debian bug tracking system administrator (administrator, Debian Bugs database) ---BeginMessage--- Subject: apache2-mpm-prefork: /usr/sbin/apache2 -h doesn't list the -X option Package: apache2-mpm-prefork Version: 2.2.3-2 Severity: minor *** Please type your report below this line *** /usr/sbin/apache2 understands the -X option, but it isn't listed with /usr/sbin/apache2 -h -- System Information: Debian Release: testing/unstable APT prefers unstable APT policy: (500, 'unstable') Architecture: i386 (i686) Shell: /bin/sh linked to /bin/bash Kernel: Linux 2.4.33.2-1-dphys-k8-smp-64gb Locale: LANG=C, LC_CTYPE=C (charmap=ANSI_X3.4-1968) Versions of packages apache2-mpm-prefork depends on: ii apache2. 2.2.3-2 Next generation, scalable, extenda ii libapr1 1.2.7-6 The Apache Portable Runtime Librar ii libaprut 1.2.7+dfsg-2The Apache Portable Runtime Utilit ii libc62.3.6.ds1-5 GNU C Library: Shared libraries ii libdb4.3 4.3.29-6Berkeley v4.3 Database Libraries [ ii libdb4.4 4.4.20-8Berkeley v4.4 Database Libraries [ ii libexpat 1.95.8-3.3 XML parsing C library - runtime li ii libldap2 2.1.30-13+b1OpenLDAP libraries ii libpcre3 6.7-1 Perl 5 Compatible Regular Expressi ii libpq4 8.1.4-7 PostgreSQL C client library ii libsqlit 3.3.7-1 SQLite 3 shared library ii libuuid1 1.39+1.40-WIP-2006.10.02+dfsg-1 universally unique id library apache2-mpm-prefork recommends no packages. -- no debconf information ---End Message--- ---BeginMessage--- Source: apache2 Source-Version: 2.2.4-1 We believe that the bug you reported is fixed in the latest version of apache2, which is due to be installed in the Debian FTP archive: apache2-doc_2.2.4-1_all.deb to pool/main/a/apache2/apache2-doc_2.2.4-1_all.deb apache2-mpm-event_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-event_2.2.4-1_i386.deb apache2-mpm-perchild_2.2.4-1_all.deb to pool/main/a/apache2/apache2-mpm-perchild_2.2.4-1_all.deb apache2-mpm-prefork_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-prefork_2.2.4-1_i386.deb apache2-mpm-worker_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-worker_2.2.4-1_i386.deb apache2-prefork-dev_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-prefork-dev_2.2.4-1_i386.deb apache2-src_2.2.4-1_all.deb to pool/main/a/apache2/apache2-src_2.2.4-1_all.deb apache2-threaded-dev_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-threaded-dev_2.2.4-1_i386.deb apache2-utils_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-utils_2.2.4-1_i386.deb apache2.2-common_2.2.4-1_i386.deb to pool/main/a/apache2/apache2.2-common_2.2.4-1_i386.deb apache2_2.2.4-1.diff.gz to pool/main/a/apache2/apache2_2.2.4-1.diff.gz apache2_2.2.4-1.dsc to pool/main/a/apache2/apache2_2.2.4-1.dsc apache2_2.2.4-1_all.deb to pool/main/a/apache2/apache2_2.2.4-1_all.deb apache2_2.2.4.orig.tar.gz to pool/main/a/apache2/apache2_2.2.4.orig.tar.gz A summary of the changes between this version and the previous one is attached. Thank you for reporting the bug, which will now be closed. If you have further comments please address them to [EMAIL PROTECTED], and the maintainer will reopen the bug report if appropriate. Debian distribution maintenance software pp. Stefan Fritsch [EMAIL PROTECTED] (supplier of updated apache2 package) (This message was generated automatically at their request; if you believe that there is a problem with it please contact the archive administrators by mailing [EMAIL PROTECTED]) -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Format: 1.7 Date: Sun, 01 Jul 2007 19:57:51 +0200 Source: apache2 Binary: apache2-utils apache2-prefork-dev apache2 apache2-mpm-prefork apache2-doc apache2-mpm-event apache2.2-common apache2-mpm-worker apache2-src apache2-threaded-dev apache2-mpm-perchild Architecture: source all i386 Version: 2.2.4-1 Distribution: unstable Urgency: medium Maintainer: Debian Apache Maintainers debian-apache@lists.debian.org Changed-By: Stefan Fritsch [EMAIL PROTECTED] Description: apache2- Next generation, scalable, extendable web server apache2-doc - documentation for apache2 apache2-mpm-event - Event driven model for Apache HTTPD apache2-mpm-perchild - Transitional package
Bug#415698: marked as done (apache2.2-common: does not create /usr/lib/cgi-bin common anymore.)
Your message dated Sun, 01 Jul 2007 19:02:04 + with message-id [EMAIL PROTECTED] and subject line Bug#415698: fixed in apache2 2.2.4-1 has caused the attached Bug report to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is now your responsibility to reopen the Bug report if necessary, and/or fix the problem forthwith. (NB: If you are a system administrator and have no idea what I am talking about this indicates a serious mail system misconfiguration somewhere. Please contact me immediately.) Debian bug tracking system administrator (administrator, Debian Bugs database) ---BeginMessage--- Package: apache2.2-common Version: 2.2.3-3.3 Severity: important A default installation of apache2 on etch (apt-get install apache2), does not create the cgi-bin directory /usr/lib/cgi-bin. As former apache2-common packages shipped this directory I'm filing the bug against apache2.2-common. Michael -- System Information: Debian Release: 4.0 APT prefers unstable APT policy: (500, 'unstable'), (300, 'experimental') Architecture: i386 (i686) Shell: /bin/sh linked to /bin/dash Kernel: Linux 2.6.21-rc4 Locale: LANG=de_DE.UTF-8, LC_CTYPE=de_DE.UTF-8 (charmap=UTF-8) Versions of packages apache2.2-common depends on: ii apache2-utils 2.2.3-3.3 utility programs for webservers ii libmagic1 4.20-1 File type determination library us ii lsb-base 3.1-23.1 Linux Standard Base 3.1 init scrip ii mime-support 3.39-1 MIME files 'mime.types' 'mailcap ii net-tools 1.60-17The NET-3 networking toolkit ii procps1:3.2.7-3 /proc file system utilities apache2.2-common recommends no packages. -- no debconf information ---End Message--- ---BeginMessage--- Source: apache2 Source-Version: 2.2.4-1 We believe that the bug you reported is fixed in the latest version of apache2, which is due to be installed in the Debian FTP archive: apache2-doc_2.2.4-1_all.deb to pool/main/a/apache2/apache2-doc_2.2.4-1_all.deb apache2-mpm-event_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-event_2.2.4-1_i386.deb apache2-mpm-perchild_2.2.4-1_all.deb to pool/main/a/apache2/apache2-mpm-perchild_2.2.4-1_all.deb apache2-mpm-prefork_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-prefork_2.2.4-1_i386.deb apache2-mpm-worker_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-worker_2.2.4-1_i386.deb apache2-prefork-dev_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-prefork-dev_2.2.4-1_i386.deb apache2-src_2.2.4-1_all.deb to pool/main/a/apache2/apache2-src_2.2.4-1_all.deb apache2-threaded-dev_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-threaded-dev_2.2.4-1_i386.deb apache2-utils_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-utils_2.2.4-1_i386.deb apache2.2-common_2.2.4-1_i386.deb to pool/main/a/apache2/apache2.2-common_2.2.4-1_i386.deb apache2_2.2.4-1.diff.gz to pool/main/a/apache2/apache2_2.2.4-1.diff.gz apache2_2.2.4-1.dsc to pool/main/a/apache2/apache2_2.2.4-1.dsc apache2_2.2.4-1_all.deb to pool/main/a/apache2/apache2_2.2.4-1_all.deb apache2_2.2.4.orig.tar.gz to pool/main/a/apache2/apache2_2.2.4.orig.tar.gz A summary of the changes between this version and the previous one is attached. Thank you for reporting the bug, which will now be closed. If you have further comments please address them to [EMAIL PROTECTED], and the maintainer will reopen the bug report if appropriate. Debian distribution maintenance software pp. Stefan Fritsch [EMAIL PROTECTED] (supplier of updated apache2 package) (This message was generated automatically at their request; if you believe that there is a problem with it please contact the archive administrators by mailing [EMAIL PROTECTED]) -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Format: 1.7 Date: Sun, 01 Jul 2007 19:57:51 +0200 Source: apache2 Binary: apache2-utils apache2-prefork-dev apache2 apache2-mpm-prefork apache2-doc apache2-mpm-event apache2.2-common apache2-mpm-worker apache2-src apache2-threaded-dev apache2-mpm-perchild Architecture: source all i386 Version: 2.2.4-1 Distribution: unstable Urgency: medium Maintainer: Debian Apache Maintainers debian-apache@lists.debian.org Changed-By: Stefan Fritsch [EMAIL PROTECTED] Description: apache2- Next generation, scalable, extendable web server apache2-doc - documentation for apache2 apache2-mpm-event - Event driven model for Apache HTTPD apache2-mpm-perchild - Transitional package - please remove apache2-mpm-prefork - Traditional model for Apache HTTPD apache2-mpm-worker - High speed threaded model for Apache HTTPD apache2-prefork-dev - development headers for apache2 apache2-src - Apache source code apache2-threaded-dev - development headers for apache2 apache2-utils - utility programs for webservers apache2.2-common - Next generation, scalable, extendable web server Closes: 289289 291841 298689 305933
Bug#400455: marked as done (apache2.2-common: /etc/init.d/apache2 restart can kill apache)
Your message dated Sun, 01 Jul 2007 19:02:03 + with message-id [EMAIL PROTECTED] and subject line Bug#298689: fixed in apache2 2.2.4-1 has caused the attached Bug report to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is now your responsibility to reopen the Bug report if necessary, and/or fix the problem forthwith. (NB: If you are a system administrator and have no idea what I am talking about this indicates a serious mail system misconfiguration somewhere. Please contact me immediately.) Debian bug tracking system administrator (administrator, Debian Bugs database) ---BeginMessage--- Package: apache2.2-common Version: 2.2.3-3.1 Severity: normal *** Please type your report below this line *** Today logrotate killed my apache. The last lines in error.log.1 are: [Sun Nov 26 06:25:25 2006] [warn] child process 6244 still did not exit, sending a SIGTERM [Sun Nov 26 06:25:27 2006] [warn] child process 6244 still did not exit, sending a SIGTERM [Sun Nov 26 06:25:29 2006] [warn] child process 6244 still did not exit, sending a SIGTERM [Sun Nov 26 06:25:31 2006] [error] child process 6244 still did not exit, sending a SIGKILL [Sun Nov 26 06:25:32 2006] [notice] caught SIGTERM, shutting down Apache did not come up again with a new error.log file. I could not reproduce the problem because I don't know how I can force the apache children to not exit on SIGTERM. Logrotate uses /etc/init.d/apache2 restart to restart apache, perhaps the sleep 10 delay in the initscript is too short in this case. Why doesn't the initscript use apache2ctl restart? Perhaps logrotate could be changed to use /etc/init.d/apache2 reload, or the restart part of the initscript could be made more reliable. -- System Information: Debian Release: 4.0 APT prefers testing APT policy: (900, 'testing') Architecture: amd64 (x86_64) Shell: /bin/sh linked to /bin/bash Kernel: Linux 2.6.17-2-amd64 Locale: LANG=de_DE.UTF-8, LC_CTYPE=de_DE.UTF-8 (charmap=UTF-8) Versions of packages apache2.2-common depends on: ii apache2-utils 2.2.3-3.1 utility programs for webservers ii libmagic1 4.17-4 File type determination library us ii lsb-base 3.1-15 Linux Standard Base 3.1 init scrip ii mime-support 3.37-1 MIME files 'mime.types' 'mailcap ii net-tools 1.60-17The NET-3 networking toolkit apache2.2-common recommends no packages. -- no debconf information ---End Message--- ---BeginMessage--- Source: apache2 Source-Version: 2.2.4-1 We believe that the bug you reported is fixed in the latest version of apache2, which is due to be installed in the Debian FTP archive: apache2-doc_2.2.4-1_all.deb to pool/main/a/apache2/apache2-doc_2.2.4-1_all.deb apache2-mpm-event_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-event_2.2.4-1_i386.deb apache2-mpm-perchild_2.2.4-1_all.deb to pool/main/a/apache2/apache2-mpm-perchild_2.2.4-1_all.deb apache2-mpm-prefork_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-prefork_2.2.4-1_i386.deb apache2-mpm-worker_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-worker_2.2.4-1_i386.deb apache2-prefork-dev_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-prefork-dev_2.2.4-1_i386.deb apache2-src_2.2.4-1_all.deb to pool/main/a/apache2/apache2-src_2.2.4-1_all.deb apache2-threaded-dev_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-threaded-dev_2.2.4-1_i386.deb apache2-utils_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-utils_2.2.4-1_i386.deb apache2.2-common_2.2.4-1_i386.deb to pool/main/a/apache2/apache2.2-common_2.2.4-1_i386.deb apache2_2.2.4-1.diff.gz to pool/main/a/apache2/apache2_2.2.4-1.diff.gz apache2_2.2.4-1.dsc to pool/main/a/apache2/apache2_2.2.4-1.dsc apache2_2.2.4-1_all.deb to pool/main/a/apache2/apache2_2.2.4-1_all.deb apache2_2.2.4.orig.tar.gz to pool/main/a/apache2/apache2_2.2.4.orig.tar.gz A summary of the changes between this version and the previous one is attached. Thank you for reporting the bug, which will now be closed. If you have further comments please address them to [EMAIL PROTECTED], and the maintainer will reopen the bug report if appropriate. Debian distribution maintenance software pp. Stefan Fritsch [EMAIL PROTECTED] (supplier of updated apache2 package) (This message was generated automatically at their request; if you believe that there is a problem with it please contact the archive administrators by mailing [EMAIL PROTECTED]) -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Format: 1.7 Date: Sun, 01 Jul 2007 19:57:51 +0200 Source: apache2 Binary: apache2-utils apache2-prefork-dev apache2 apache2-mpm-prefork apache2-doc apache2-mpm-event apache2.2-common apache2-mpm-worker apache2-src apache2-threaded-dev apache2-mpm-perchild Architecture: source all i386 Version: 2.2.4-1 Distribution: unstable Urgency: medium Maintainer: Debian Apache Maintainers
Bug#410331: marked as done (proxy: error reading status line from remote server using Apache2 mod_proxy against IIS)
Your message dated Sun, 01 Jul 2007 19:02:04 + with message-id [EMAIL PROTECTED] and subject line Bug#410331: fixed in apache2 2.2.4-1 has caused the attached Bug report to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is now your responsibility to reopen the Bug report if necessary, and/or fix the problem forthwith. (NB: If you are a system administrator and have no idea what I am talking about this indicates a serious mail system misconfiguration somewhere. Please contact me immediately.) Debian bug tracking system administrator (administrator, Debian Bugs database) ---BeginMessage--- Package: apache2 Version: 2.2.3-3.2 Severity: Low Tags: patch As extensively documented and resolved in Apache bugzilla (http://issues.apache.org/bugzilla/show_bug.cgi?id=37770) there is a bad interaction between mod_proxy and Microsoft IIS in certain situations. This is a particularly prevalent issue for people using Apache2 to front-end a Microsoft Outlook Web Access server though it also occurs in many other situations. The most recently available .deb for Apache2 doesn't yet incorporate this small fix. Kris Boutilier Information Services Co-ordinator Sunshine Coast Regional District ---End Message--- ---BeginMessage--- Source: apache2 Source-Version: 2.2.4-1 We believe that the bug you reported is fixed in the latest version of apache2, which is due to be installed in the Debian FTP archive: apache2-doc_2.2.4-1_all.deb to pool/main/a/apache2/apache2-doc_2.2.4-1_all.deb apache2-mpm-event_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-event_2.2.4-1_i386.deb apache2-mpm-perchild_2.2.4-1_all.deb to pool/main/a/apache2/apache2-mpm-perchild_2.2.4-1_all.deb apache2-mpm-prefork_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-prefork_2.2.4-1_i386.deb apache2-mpm-worker_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-worker_2.2.4-1_i386.deb apache2-prefork-dev_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-prefork-dev_2.2.4-1_i386.deb apache2-src_2.2.4-1_all.deb to pool/main/a/apache2/apache2-src_2.2.4-1_all.deb apache2-threaded-dev_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-threaded-dev_2.2.4-1_i386.deb apache2-utils_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-utils_2.2.4-1_i386.deb apache2.2-common_2.2.4-1_i386.deb to pool/main/a/apache2/apache2.2-common_2.2.4-1_i386.deb apache2_2.2.4-1.diff.gz to pool/main/a/apache2/apache2_2.2.4-1.diff.gz apache2_2.2.4-1.dsc to pool/main/a/apache2/apache2_2.2.4-1.dsc apache2_2.2.4-1_all.deb to pool/main/a/apache2/apache2_2.2.4-1_all.deb apache2_2.2.4.orig.tar.gz to pool/main/a/apache2/apache2_2.2.4.orig.tar.gz A summary of the changes between this version and the previous one is attached. Thank you for reporting the bug, which will now be closed. If you have further comments please address them to [EMAIL PROTECTED], and the maintainer will reopen the bug report if appropriate. Debian distribution maintenance software pp. Stefan Fritsch [EMAIL PROTECTED] (supplier of updated apache2 package) (This message was generated automatically at their request; if you believe that there is a problem with it please contact the archive administrators by mailing [EMAIL PROTECTED]) -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Format: 1.7 Date: Sun, 01 Jul 2007 19:57:51 +0200 Source: apache2 Binary: apache2-utils apache2-prefork-dev apache2 apache2-mpm-prefork apache2-doc apache2-mpm-event apache2.2-common apache2-mpm-worker apache2-src apache2-threaded-dev apache2-mpm-perchild Architecture: source all i386 Version: 2.2.4-1 Distribution: unstable Urgency: medium Maintainer: Debian Apache Maintainers debian-apache@lists.debian.org Changed-By: Stefan Fritsch [EMAIL PROTECTED] Description: apache2- Next generation, scalable, extendable web server apache2-doc - documentation for apache2 apache2-mpm-event - Event driven model for Apache HTTPD apache2-mpm-perchild - Transitional package - please remove apache2-mpm-prefork - Traditional model for Apache HTTPD apache2-mpm-worker - High speed threaded model for Apache HTTPD apache2-prefork-dev - development headers for apache2 apache2-src - Apache source code apache2-threaded-dev - development headers for apache2 apache2-utils - utility programs for webservers apache2.2-common - Next generation, scalable, extendable web server Closes: 289289 291841 298689 305933 350286 350822 384682 391817 399056 410331 412580 414429 415698 418536 419539 427050 428887 430116 431048 431125 Changes: apache2 (2.2.4-1) unstable; urgency=medium . [ Stefan Fritsch ] * Urgency medium for security fix * Fix CVE-2007-1863: DoS in mod_cache * New upstream version (Closes: #427050) - Fixes proxy: error reading status line from remote server (Closes: #410331) * Fix CVE-2007-1862: mod_mem_cache DoS (introduced in 2.2.4) * Change logrotate script to use reload instead of restart. (Closes: #298689) *
Bug#384682: marked as done (init.d restart fails if previous start failed)
Your message dated Sun, 01 Jul 2007 19:02:04 + with message-id [EMAIL PROTECTED] and subject line Bug#384682: fixed in apache2 2.2.4-1 has caused the attached Bug report to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is now your responsibility to reopen the Bug report if necessary, and/or fix the problem forthwith. (NB: If you are a system administrator and have no idea what I am talking about this indicates a serious mail system misconfiguration somewhere. Please contact me immediately.) Debian bug tracking system administrator (administrator, Debian Bugs database) ---BeginMessage--- Package: apache2-common Version: 2.0.55-4.1 Severity: normal # /etc/init.d/apache2 restart Forcing reload of apache 2.0 web server...httpd (pid 23030?) not running failed! # echo $? 1 In the previous iteration the server did not start up because of some SSL misconfiguration. I corrected that but now it doesn't want to restart. Running stop and start separately works fine. -- System Information: Debian Release: testing/unstable APT prefers testing APT policy: (990, 'testing'), (500, 'unstable'), (1, 'experimental') Architecture: i386 (i686) Shell: /bin/sh linked to /bin/bash Kernel: Linux 2.6.16-2-k7 Locale: [EMAIL PROTECTED], [EMAIL PROTECTED] (charmap=ISO-8859-15) Versions of packages apache2-common depends on: ii apache2-utils 2.0.55-4.1 utility programs for webservers ii debconf 1.5.3 Debian configuration management sy ii debianutils 2.17 Miscellaneous utilities specific t ii libc6 2.3.6-15 GNU C Library: Shared libraries ii libdb4.3 4.3.29-6 Berkeley v4.3 Database Libraries [ ii libexpat1 1.95.8-3.2 XML parsing C library - runtime li ii libgcc1 1:4.1.1-5 GCC support library ii libmagic1 4.17-2 File type determination library us ii lsb-base 3.1-14 Linux Standard Base 3.1 init scrip ii mime-support 3.37-1 MIME files 'mime.types' 'mailcap ii net-tools 1.60-17The NET-3 networking toolkit ii openssl 0.9.8b-2 Secure Socket Layer (SSL) binary a ii ssl-cert 1.0.13 Simple debconf wrapper for openssl apache2-common recommends no packages. -- no debconf information ---End Message--- ---BeginMessage--- Source: apache2 Source-Version: 2.2.4-1 We believe that the bug you reported is fixed in the latest version of apache2, which is due to be installed in the Debian FTP archive: apache2-doc_2.2.4-1_all.deb to pool/main/a/apache2/apache2-doc_2.2.4-1_all.deb apache2-mpm-event_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-event_2.2.4-1_i386.deb apache2-mpm-perchild_2.2.4-1_all.deb to pool/main/a/apache2/apache2-mpm-perchild_2.2.4-1_all.deb apache2-mpm-prefork_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-prefork_2.2.4-1_i386.deb apache2-mpm-worker_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-worker_2.2.4-1_i386.deb apache2-prefork-dev_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-prefork-dev_2.2.4-1_i386.deb apache2-src_2.2.4-1_all.deb to pool/main/a/apache2/apache2-src_2.2.4-1_all.deb apache2-threaded-dev_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-threaded-dev_2.2.4-1_i386.deb apache2-utils_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-utils_2.2.4-1_i386.deb apache2.2-common_2.2.4-1_i386.deb to pool/main/a/apache2/apache2.2-common_2.2.4-1_i386.deb apache2_2.2.4-1.diff.gz to pool/main/a/apache2/apache2_2.2.4-1.diff.gz apache2_2.2.4-1.dsc to pool/main/a/apache2/apache2_2.2.4-1.dsc apache2_2.2.4-1_all.deb to pool/main/a/apache2/apache2_2.2.4-1_all.deb apache2_2.2.4.orig.tar.gz to pool/main/a/apache2/apache2_2.2.4.orig.tar.gz A summary of the changes between this version and the previous one is attached. Thank you for reporting the bug, which will now be closed. If you have further comments please address them to [EMAIL PROTECTED], and the maintainer will reopen the bug report if appropriate. Debian distribution maintenance software pp. Stefan Fritsch [EMAIL PROTECTED] (supplier of updated apache2 package) (This message was generated automatically at their request; if you believe that there is a problem with it please contact the archive administrators by mailing [EMAIL PROTECTED]) -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Format: 1.7 Date: Sun, 01 Jul 2007 19:57:51 +0200 Source: apache2 Binary: apache2-utils apache2-prefork-dev apache2 apache2-mpm-prefork apache2-doc apache2-mpm-event apache2.2-common apache2-mpm-worker apache2-src apache2-threaded-dev apache2-mpm-perchild Architecture: source all i386 Version: 2.2.4-1 Distribution: unstable Urgency: medium Maintainer: Debian Apache Maintainers debian-apache@lists.debian.org Changed-By: Stefan Fritsch [EMAIL PROTECTED]
Bug#430116: marked as done (apache2.2-common: /etc/init.d/apache2 start does nothing)
Your message dated Sun, 01 Jul 2007 19:02:04 + with message-id [EMAIL PROTECTED] and subject line Bug#430116: fixed in apache2 2.2.4-1 has caused the attached Bug report to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is now your responsibility to reopen the Bug report if necessary, and/or fix the problem forthwith. (NB: If you are a system administrator and have no idea what I am talking about this indicates a serious mail system misconfiguration somewhere. Please contact me immediately.) Debian bug tracking system administrator (administrator, Debian Bugs database) ---BeginMessage--- Package: apache2.2-common Version: 2.2.3-4 Severity: normal After a : # /etc/init.d/apache2 start # echo $? 0 There's no apache process started :( It seems that I got to this result after apache (not apache2) was initially installed. Later on I installed apache2, then removed apache... But there's no warning at all saying it won't start apache2. adding set -x to /etc/init.d/apache2, I can see that /etc/default/apache2 contains NO_START=1 Maybe there should be a warning message on /etc/init.d/apache2 whenever NO_START is set to 1 (or != 0) ? Hope this helps, Best regards, -- System Information: Debian Release: lenny/sid APT prefers testing APT policy: (500, 'testing'), (500, 'stable') Architecture: i386 (i686) Kernel: Linux 2.6.18-4-xen-686 (SMP w/2 CPU cores) Locale: LANG=fr_FR.UTF-8, LC_CTYPE=fr_FR.UTF-8 (charmap=UTF-8) Shell: /bin/sh linked to /bin/bash Versions of packages apache2.2-common depends on: ii apache2-utils 2.2.3-4utility programs for webservers ii libmagic1 4.21-1 File type determination library us ii lsb-base 3.1-23.1 Linux Standard Base 3.1 init scrip ii mime-support 3.39-1 MIME files 'mime.types' 'mailcap ii net-tools 1.60-17The NET-3 networking toolkit ii procps1:3.2.7-3 /proc file system utilities apache2.2-common recommends no packages. -- no debconf information ---End Message--- ---BeginMessage--- Source: apache2 Source-Version: 2.2.4-1 We believe that the bug you reported is fixed in the latest version of apache2, which is due to be installed in the Debian FTP archive: apache2-doc_2.2.4-1_all.deb to pool/main/a/apache2/apache2-doc_2.2.4-1_all.deb apache2-mpm-event_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-event_2.2.4-1_i386.deb apache2-mpm-perchild_2.2.4-1_all.deb to pool/main/a/apache2/apache2-mpm-perchild_2.2.4-1_all.deb apache2-mpm-prefork_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-prefork_2.2.4-1_i386.deb apache2-mpm-worker_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-worker_2.2.4-1_i386.deb apache2-prefork-dev_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-prefork-dev_2.2.4-1_i386.deb apache2-src_2.2.4-1_all.deb to pool/main/a/apache2/apache2-src_2.2.4-1_all.deb apache2-threaded-dev_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-threaded-dev_2.2.4-1_i386.deb apache2-utils_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-utils_2.2.4-1_i386.deb apache2.2-common_2.2.4-1_i386.deb to pool/main/a/apache2/apache2.2-common_2.2.4-1_i386.deb apache2_2.2.4-1.diff.gz to pool/main/a/apache2/apache2_2.2.4-1.diff.gz apache2_2.2.4-1.dsc to pool/main/a/apache2/apache2_2.2.4-1.dsc apache2_2.2.4-1_all.deb to pool/main/a/apache2/apache2_2.2.4-1_all.deb apache2_2.2.4.orig.tar.gz to pool/main/a/apache2/apache2_2.2.4.orig.tar.gz A summary of the changes between this version and the previous one is attached. Thank you for reporting the bug, which will now be closed. If you have further comments please address them to [EMAIL PROTECTED], and the maintainer will reopen the bug report if appropriate. Debian distribution maintenance software pp. Stefan Fritsch [EMAIL PROTECTED] (supplier of updated apache2 package) (This message was generated automatically at their request; if you believe that there is a problem with it please contact the archive administrators by mailing [EMAIL PROTECTED]) -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Format: 1.7 Date: Sun, 01 Jul 2007 19:57:51 +0200 Source: apache2 Binary: apache2-utils apache2-prefork-dev apache2 apache2-mpm-prefork apache2-doc apache2-mpm-event apache2.2-common apache2-mpm-worker apache2-src apache2-threaded-dev apache2-mpm-perchild Architecture: source all i386 Version: 2.2.4-1 Distribution: unstable Urgency: medium Maintainer: Debian Apache Maintainers debian-apache@lists.debian.org Changed-By: Stefan Fritsch [EMAIL PROTECTED] Description: apache2- Next generation, scalable, extendable web server apache2-doc - documentation for apache2 apache2-mpm-event - Event driven model for Apache HTTPD apache2-mpm-perchild - Transitional package - please remove apache2-mpm-prefork - Traditional model for Apache HTTPD apache2-mpm-worker - High speed threaded model
Bug#428887: marked as done (apache2.2-common: files left upon purge)
Your message dated Sun, 01 Jul 2007 19:02:04 + with message-id [EMAIL PROTECTED] and subject line Bug#428887: fixed in apache2 2.2.4-1 has caused the attached Bug report to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is now your responsibility to reopen the Bug report if necessary, and/or fix the problem forthwith. (NB: If you are a system administrator and have no idea what I am talking about this indicates a serious mail system misconfiguration somewhere. Please contact me immediately.) Debian bug tracking system administrator (administrator, Debian Bugs database) ---BeginMessage--- Package: apache2.2-common Severity: wishlist Removing apache2.2-common ... No apache MPM package installed Purging configuration files for apache2.2-common ... dpkg - warning: while removing apache2.2-common, directory `/var/cache/apache2' not empty so not removed. dpkg - warning: while removing apache2.2-common, directory `/var/log/apache2' not empty so not removed. # ls -alorRg /var/log/apache2 /var/cache/apache2 /var/log/apache2: total 20 -rw-r- 1 183 May 26 07:53 error.log.2.gz -rw-r- 1 1274 May 31 06:24 error.log.1 -rw-r- 10 Jun 5 00:03 error.log -rw-r- 10 May 26 07:15 access.log drwxr-xr-x 11 8192 Jun 15 05:15 .. drwxr-xr-x 2 4096 Jun 5 00:03 . /var/cache/apache2: total 8 -rw-r--r-- 10 Jun 11 20:54 reload drwxr-xr-x 18 4096 Jun 15 05:16 .. drwxr-xr-x 2 4096 Jun 15 05:24 . # echo /var/log/apache2 /var/cache/apache2|xargs -n 1 dlocate apache2.2-common: /var/log/apache2 apache2.2-common: /var/cache/apache2 apache2.2-common: /var/cache/apache2/mod_disk_cache ---End Message--- ---BeginMessage--- Source: apache2 Source-Version: 2.2.4-1 We believe that the bug you reported is fixed in the latest version of apache2, which is due to be installed in the Debian FTP archive: apache2-doc_2.2.4-1_all.deb to pool/main/a/apache2/apache2-doc_2.2.4-1_all.deb apache2-mpm-event_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-event_2.2.4-1_i386.deb apache2-mpm-perchild_2.2.4-1_all.deb to pool/main/a/apache2/apache2-mpm-perchild_2.2.4-1_all.deb apache2-mpm-prefork_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-prefork_2.2.4-1_i386.deb apache2-mpm-worker_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-worker_2.2.4-1_i386.deb apache2-prefork-dev_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-prefork-dev_2.2.4-1_i386.deb apache2-src_2.2.4-1_all.deb to pool/main/a/apache2/apache2-src_2.2.4-1_all.deb apache2-threaded-dev_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-threaded-dev_2.2.4-1_i386.deb apache2-utils_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-utils_2.2.4-1_i386.deb apache2.2-common_2.2.4-1_i386.deb to pool/main/a/apache2/apache2.2-common_2.2.4-1_i386.deb apache2_2.2.4-1.diff.gz to pool/main/a/apache2/apache2_2.2.4-1.diff.gz apache2_2.2.4-1.dsc to pool/main/a/apache2/apache2_2.2.4-1.dsc apache2_2.2.4-1_all.deb to pool/main/a/apache2/apache2_2.2.4-1_all.deb apache2_2.2.4.orig.tar.gz to pool/main/a/apache2/apache2_2.2.4.orig.tar.gz A summary of the changes between this version and the previous one is attached. Thank you for reporting the bug, which will now be closed. If you have further comments please address them to [EMAIL PROTECTED], and the maintainer will reopen the bug report if appropriate. Debian distribution maintenance software pp. Stefan Fritsch [EMAIL PROTECTED] (supplier of updated apache2 package) (This message was generated automatically at their request; if you believe that there is a problem with it please contact the archive administrators by mailing [EMAIL PROTECTED]) -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Format: 1.7 Date: Sun, 01 Jul 2007 19:57:51 +0200 Source: apache2 Binary: apache2-utils apache2-prefork-dev apache2 apache2-mpm-prefork apache2-doc apache2-mpm-event apache2.2-common apache2-mpm-worker apache2-src apache2-threaded-dev apache2-mpm-perchild Architecture: source all i386 Version: 2.2.4-1 Distribution: unstable Urgency: medium Maintainer: Debian Apache Maintainers debian-apache@lists.debian.org Changed-By: Stefan Fritsch [EMAIL PROTECTED] Description: apache2- Next generation, scalable, extendable web server apache2-doc - documentation for apache2 apache2-mpm-event - Event driven model for Apache HTTPD apache2-mpm-perchild - Transitional package - please remove apache2-mpm-prefork - Traditional model for Apache HTTPD apache2-mpm-worker - High speed threaded model for Apache HTTPD apache2-prefork-dev - development headers for apache2 apache2-src - Apache source code apache2-threaded-dev - development headers for apache2 apache2-utils - utility programs for webservers apache2.2-common - Next generation, scalable, extendable web server Closes: 289289 291841 298689 305933 350286 350822 384682 391817 399056 410331 412580 414429 415698 418536 419539 427050 428887 430116 431048 431125 Changes: apache2
Bug#289289: marked as done (apache2-doc: needed /etc/init.d/apache2 restart to get the http://localhost/manual/ working)
Your message dated Sun, 01 Jul 2007 19:02:03 + with message-id [EMAIL PROTECTED] and subject line Bug#289289: fixed in apache2 2.2.4-1 has caused the attached Bug report to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is now your responsibility to reopen the Bug report if necessary, and/or fix the problem forthwith. (NB: If you are a system administrator and have no idea what I am talking about this indicates a serious mail system misconfiguration somewhere. Please contact me immediately.) Debian bug tracking system administrator (administrator, Debian Bugs database) ---BeginMessage--- Package: apache2-doc Version: 2.0.52-3 Severity: normal IMHO the package should be working after installation. I needed to run /etc/init.d/apache2 restart to get access to http://localhost/manual/ I think this should be handled by a postinst script or someting similar. I am not a apache guru (and therefor need apache-doc package), so maybe something with apachectl would work as well from a postinst script. -- System Information: Debian Release: 3.1 APT prefers unstable APT policy: (990, 'unstable') Architecture: i386 (i686) Kernel: Linux 2.6.9-1-386 Locale: LANG=de_DE.UTF-8, LC_CTYPE=de_DE.UTF-8 (charmap=UTF-8) -- no debconf information ---End Message--- ---BeginMessage--- Source: apache2 Source-Version: 2.2.4-1 We believe that the bug you reported is fixed in the latest version of apache2, which is due to be installed in the Debian FTP archive: apache2-doc_2.2.4-1_all.deb to pool/main/a/apache2/apache2-doc_2.2.4-1_all.deb apache2-mpm-event_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-event_2.2.4-1_i386.deb apache2-mpm-perchild_2.2.4-1_all.deb to pool/main/a/apache2/apache2-mpm-perchild_2.2.4-1_all.deb apache2-mpm-prefork_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-prefork_2.2.4-1_i386.deb apache2-mpm-worker_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-worker_2.2.4-1_i386.deb apache2-prefork-dev_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-prefork-dev_2.2.4-1_i386.deb apache2-src_2.2.4-1_all.deb to pool/main/a/apache2/apache2-src_2.2.4-1_all.deb apache2-threaded-dev_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-threaded-dev_2.2.4-1_i386.deb apache2-utils_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-utils_2.2.4-1_i386.deb apache2.2-common_2.2.4-1_i386.deb to pool/main/a/apache2/apache2.2-common_2.2.4-1_i386.deb apache2_2.2.4-1.diff.gz to pool/main/a/apache2/apache2_2.2.4-1.diff.gz apache2_2.2.4-1.dsc to pool/main/a/apache2/apache2_2.2.4-1.dsc apache2_2.2.4-1_all.deb to pool/main/a/apache2/apache2_2.2.4-1_all.deb apache2_2.2.4.orig.tar.gz to pool/main/a/apache2/apache2_2.2.4.orig.tar.gz A summary of the changes between this version and the previous one is attached. Thank you for reporting the bug, which will now be closed. If you have further comments please address them to [EMAIL PROTECTED], and the maintainer will reopen the bug report if appropriate. Debian distribution maintenance software pp. Stefan Fritsch [EMAIL PROTECTED] (supplier of updated apache2 package) (This message was generated automatically at their request; if you believe that there is a problem with it please contact the archive administrators by mailing [EMAIL PROTECTED]) -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Format: 1.7 Date: Sun, 01 Jul 2007 19:57:51 +0200 Source: apache2 Binary: apache2-utils apache2-prefork-dev apache2 apache2-mpm-prefork apache2-doc apache2-mpm-event apache2.2-common apache2-mpm-worker apache2-src apache2-threaded-dev apache2-mpm-perchild Architecture: source all i386 Version: 2.2.4-1 Distribution: unstable Urgency: medium Maintainer: Debian Apache Maintainers debian-apache@lists.debian.org Changed-By: Stefan Fritsch [EMAIL PROTECTED] Description: apache2- Next generation, scalable, extendable web server apache2-doc - documentation for apache2 apache2-mpm-event - Event driven model for Apache HTTPD apache2-mpm-perchild - Transitional package - please remove apache2-mpm-prefork - Traditional model for Apache HTTPD apache2-mpm-worker - High speed threaded model for Apache HTTPD apache2-prefork-dev - development headers for apache2 apache2-src - Apache source code apache2-threaded-dev - development headers for apache2 apache2-utils - utility programs for webservers apache2.2-common - Next generation, scalable, extendable web server Closes: 289289 291841 298689 305933 350286 350822 384682 391817 399056 410331 412580 414429 415698 418536 419539 427050 428887 430116 431048 431125 Changes: apache2 (2.2.4-1) unstable; urgency=medium . [ Stefan Fritsch ] * Urgency medium for security fix * Fix CVE-2007-1863: DoS in mod_cache * New upstream version (Closes: #427050) - Fixes proxy: error reading status line from remote server (Closes: #410331) * Fix CVE-2007-1862: mod_mem_cache DoS (introduced in 2.2.4) * Change logrotate script to
Bug#408429: marked as done (apache2-doc: say how to browse manual)
Your message dated Sun, 01 Jul 2007 19:02:04 + with message-id [EMAIL PROTECTED] and subject line Bug#350822: fixed in apache2 2.2.4-1 has caused the attached Bug report to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is now your responsibility to reopen the Bug report if necessary, and/or fix the problem forthwith. (NB: If you are a system administrator and have no idea what I am talking about this indicates a serious mail system misconfiguration somewhere. Please contact me immediately.) Debian bug tracking system administrator (administrator, Debian Bugs database) ---BeginMessage--- Package: apache2-doc Version: 2.2.3-3.2 Severity: wishlist Add a readme saying how to read this via http://localhost/WHAT? Wait, I figured it out: http://localhost/doc/apache2-doc/manual/ OK put that in the readme. Else some people will use file:/// which is a browsing disaster. ---End Message--- ---BeginMessage--- Source: apache2 Source-Version: 2.2.4-1 We believe that the bug you reported is fixed in the latest version of apache2, which is due to be installed in the Debian FTP archive: apache2-doc_2.2.4-1_all.deb to pool/main/a/apache2/apache2-doc_2.2.4-1_all.deb apache2-mpm-event_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-event_2.2.4-1_i386.deb apache2-mpm-perchild_2.2.4-1_all.deb to pool/main/a/apache2/apache2-mpm-perchild_2.2.4-1_all.deb apache2-mpm-prefork_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-prefork_2.2.4-1_i386.deb apache2-mpm-worker_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-worker_2.2.4-1_i386.deb apache2-prefork-dev_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-prefork-dev_2.2.4-1_i386.deb apache2-src_2.2.4-1_all.deb to pool/main/a/apache2/apache2-src_2.2.4-1_all.deb apache2-threaded-dev_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-threaded-dev_2.2.4-1_i386.deb apache2-utils_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-utils_2.2.4-1_i386.deb apache2.2-common_2.2.4-1_i386.deb to pool/main/a/apache2/apache2.2-common_2.2.4-1_i386.deb apache2_2.2.4-1.diff.gz to pool/main/a/apache2/apache2_2.2.4-1.diff.gz apache2_2.2.4-1.dsc to pool/main/a/apache2/apache2_2.2.4-1.dsc apache2_2.2.4-1_all.deb to pool/main/a/apache2/apache2_2.2.4-1_all.deb apache2_2.2.4.orig.tar.gz to pool/main/a/apache2/apache2_2.2.4.orig.tar.gz A summary of the changes between this version and the previous one is attached. Thank you for reporting the bug, which will now be closed. If you have further comments please address them to [EMAIL PROTECTED], and the maintainer will reopen the bug report if appropriate. Debian distribution maintenance software pp. Stefan Fritsch [EMAIL PROTECTED] (supplier of updated apache2 package) (This message was generated automatically at their request; if you believe that there is a problem with it please contact the archive administrators by mailing [EMAIL PROTECTED]) -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Format: 1.7 Date: Sun, 01 Jul 2007 19:57:51 +0200 Source: apache2 Binary: apache2-utils apache2-prefork-dev apache2 apache2-mpm-prefork apache2-doc apache2-mpm-event apache2.2-common apache2-mpm-worker apache2-src apache2-threaded-dev apache2-mpm-perchild Architecture: source all i386 Version: 2.2.4-1 Distribution: unstable Urgency: medium Maintainer: Debian Apache Maintainers debian-apache@lists.debian.org Changed-By: Stefan Fritsch [EMAIL PROTECTED] Description: apache2- Next generation, scalable, extendable web server apache2-doc - documentation for apache2 apache2-mpm-event - Event driven model for Apache HTTPD apache2-mpm-perchild - Transitional package - please remove apache2-mpm-prefork - Traditional model for Apache HTTPD apache2-mpm-worker - High speed threaded model for Apache HTTPD apache2-prefork-dev - development headers for apache2 apache2-src - Apache source code apache2-threaded-dev - development headers for apache2 apache2-utils - utility programs for webservers apache2.2-common - Next generation, scalable, extendable web server Closes: 289289 291841 298689 305933 350286 350822 384682 391817 399056 410331 412580 414429 415698 418536 419539 427050 428887 430116 431048 431125 Changes: apache2 (2.2.4-1) unstable; urgency=medium . [ Stefan Fritsch ] * Urgency medium for security fix * Fix CVE-2007-1863: DoS in mod_cache * New upstream version (Closes: #427050) - Fixes proxy: error reading status line from remote server (Closes: #410331) * Fix CVE-2007-1862: mod_mem_cache DoS (introduced in 2.2.4) * Change logrotate script to use reload instead of restart. (Closes: #298689) * chmod o-rx /var/log/apache2 (Closes: #291841) * chmod o-x suexec (Closes: #431048) * Update patch for truncated mod_cgi 500 responses from upstream SVN (Closes: #412580) * Don't use AddDefaultCharset for our docs (Closes: #414429) * fix options syntax in sites-available/default (Closes:
Bug#399056: marked as done (apache2 could suggest apache2-doc and www-browser as apache2-common did)
Your message dated Sun, 01 Jul 2007 19:02:04 + with message-id [EMAIL PROTECTED] and subject line Bug#399056: fixed in apache2 2.2.4-1 has caused the attached Bug report to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is now your responsibility to reopen the Bug report if necessary, and/or fix the problem forthwith. (NB: If you are a system administrator and have no idea what I am talking about this indicates a serious mail system misconfiguration somewhere. Please contact me immediately.) Debian bug tracking system administrator (administrator, Debian Bugs database) ---BeginMessage--- Package: apache2 Version: 2.2.3-3.1 Severity: wishlist *** Please type your report below this line *** apache2-common used to suggest apache2-doc and www-browser (and lynx in particular as the preferred alternative). Since it has disappeared, would it be possible to include those suggestions under apache2, or is there a reason for not doing so? ---End Message--- ---BeginMessage--- Source: apache2 Source-Version: 2.2.4-1 We believe that the bug you reported is fixed in the latest version of apache2, which is due to be installed in the Debian FTP archive: apache2-doc_2.2.4-1_all.deb to pool/main/a/apache2/apache2-doc_2.2.4-1_all.deb apache2-mpm-event_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-event_2.2.4-1_i386.deb apache2-mpm-perchild_2.2.4-1_all.deb to pool/main/a/apache2/apache2-mpm-perchild_2.2.4-1_all.deb apache2-mpm-prefork_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-prefork_2.2.4-1_i386.deb apache2-mpm-worker_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-worker_2.2.4-1_i386.deb apache2-prefork-dev_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-prefork-dev_2.2.4-1_i386.deb apache2-src_2.2.4-1_all.deb to pool/main/a/apache2/apache2-src_2.2.4-1_all.deb apache2-threaded-dev_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-threaded-dev_2.2.4-1_i386.deb apache2-utils_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-utils_2.2.4-1_i386.deb apache2.2-common_2.2.4-1_i386.deb to pool/main/a/apache2/apache2.2-common_2.2.4-1_i386.deb apache2_2.2.4-1.diff.gz to pool/main/a/apache2/apache2_2.2.4-1.diff.gz apache2_2.2.4-1.dsc to pool/main/a/apache2/apache2_2.2.4-1.dsc apache2_2.2.4-1_all.deb to pool/main/a/apache2/apache2_2.2.4-1_all.deb apache2_2.2.4.orig.tar.gz to pool/main/a/apache2/apache2_2.2.4.orig.tar.gz A summary of the changes between this version and the previous one is attached. Thank you for reporting the bug, which will now be closed. If you have further comments please address them to [EMAIL PROTECTED], and the maintainer will reopen the bug report if appropriate. Debian distribution maintenance software pp. Stefan Fritsch [EMAIL PROTECTED] (supplier of updated apache2 package) (This message was generated automatically at their request; if you believe that there is a problem with it please contact the archive administrators by mailing [EMAIL PROTECTED]) -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Format: 1.7 Date: Sun, 01 Jul 2007 19:57:51 +0200 Source: apache2 Binary: apache2-utils apache2-prefork-dev apache2 apache2-mpm-prefork apache2-doc apache2-mpm-event apache2.2-common apache2-mpm-worker apache2-src apache2-threaded-dev apache2-mpm-perchild Architecture: source all i386 Version: 2.2.4-1 Distribution: unstable Urgency: medium Maintainer: Debian Apache Maintainers debian-apache@lists.debian.org Changed-By: Stefan Fritsch [EMAIL PROTECTED] Description: apache2- Next generation, scalable, extendable web server apache2-doc - documentation for apache2 apache2-mpm-event - Event driven model for Apache HTTPD apache2-mpm-perchild - Transitional package - please remove apache2-mpm-prefork - Traditional model for Apache HTTPD apache2-mpm-worker - High speed threaded model for Apache HTTPD apache2-prefork-dev - development headers for apache2 apache2-src - Apache source code apache2-threaded-dev - development headers for apache2 apache2-utils - utility programs for webservers apache2.2-common - Next generation, scalable, extendable web server Closes: 289289 291841 298689 305933 350286 350822 384682 391817 399056 410331 412580 414429 415698 418536 419539 427050 428887 430116 431048 431125 Changes: apache2 (2.2.4-1) unstable; urgency=medium . [ Stefan Fritsch ] * Urgency medium for security fix * Fix CVE-2007-1863: DoS in mod_cache * New upstream version (Closes: #427050) - Fixes proxy: error reading status line from remote server (Closes: #410331) * Fix CVE-2007-1862: mod_mem_cache DoS (introduced in 2.2.4) * Change logrotate script to use reload instead of restart. (Closes: #298689) * chmod o-rx /var/log/apache2 (Closes: #291841) * chmod o-x suexec (Closes: #431048) * Update patch for truncated mod_cgi 500 responses from upstream SVN (Closes: #412580) * Don't use AddDefaultCharset for our docs (Closes: #414429)
Bug#419539: marked as done (options error in Apache config file)
Your message dated Sun, 01 Jul 2007 19:02:04 + with message-id [EMAIL PROTECTED] and subject line Bug#419539: fixed in apache2 2.2.4-1 has caused the attached Bug report to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is now your responsibility to reopen the Bug report if necessary, and/or fix the problem forthwith. (NB: If you are a system administrator and have no idea what I am talking about this indicates a serious mail system misconfiguration somewhere. Please contact me immediately.) Debian bug tracking system administrator (administrator, Debian Bugs database) ---BeginMessage--- Package: apache2.2-common Version: 2.2.3-4 The file /etc/apache2/sites-available/default contains this item (in the Directory /usr/lib/cgi-bin section): Options ExecCGI -MultiViews +SymLinksIfOwnerMatch This is explicitly disallowed by the Apache documentation. From http://httpd.apache.org/docs/2.2/mod/core.html#options : Normally, if multiple Options could apply to a directory, then the most specific one is used and others are ignored; the options are not merged. However if *all* the options on the Options directive are preceded by a + or - symbol, the options are merged. Prefixing a + to the ExecCGI option would resolve the issue. This bug is a reversion. I reported it previously (bug #345922), and it was supposed to have been fixed. -- Ian Bruce ---End Message--- ---BeginMessage--- Source: apache2 Source-Version: 2.2.4-1 We believe that the bug you reported is fixed in the latest version of apache2, which is due to be installed in the Debian FTP archive: apache2-doc_2.2.4-1_all.deb to pool/main/a/apache2/apache2-doc_2.2.4-1_all.deb apache2-mpm-event_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-event_2.2.4-1_i386.deb apache2-mpm-perchild_2.2.4-1_all.deb to pool/main/a/apache2/apache2-mpm-perchild_2.2.4-1_all.deb apache2-mpm-prefork_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-prefork_2.2.4-1_i386.deb apache2-mpm-worker_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-worker_2.2.4-1_i386.deb apache2-prefork-dev_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-prefork-dev_2.2.4-1_i386.deb apache2-src_2.2.4-1_all.deb to pool/main/a/apache2/apache2-src_2.2.4-1_all.deb apache2-threaded-dev_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-threaded-dev_2.2.4-1_i386.deb apache2-utils_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-utils_2.2.4-1_i386.deb apache2.2-common_2.2.4-1_i386.deb to pool/main/a/apache2/apache2.2-common_2.2.4-1_i386.deb apache2_2.2.4-1.diff.gz to pool/main/a/apache2/apache2_2.2.4-1.diff.gz apache2_2.2.4-1.dsc to pool/main/a/apache2/apache2_2.2.4-1.dsc apache2_2.2.4-1_all.deb to pool/main/a/apache2/apache2_2.2.4-1_all.deb apache2_2.2.4.orig.tar.gz to pool/main/a/apache2/apache2_2.2.4.orig.tar.gz A summary of the changes between this version and the previous one is attached. Thank you for reporting the bug, which will now be closed. If you have further comments please address them to [EMAIL PROTECTED], and the maintainer will reopen the bug report if appropriate. Debian distribution maintenance software pp. Stefan Fritsch [EMAIL PROTECTED] (supplier of updated apache2 package) (This message was generated automatically at their request; if you believe that there is a problem with it please contact the archive administrators by mailing [EMAIL PROTECTED]) -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Format: 1.7 Date: Sun, 01 Jul 2007 19:57:51 +0200 Source: apache2 Binary: apache2-utils apache2-prefork-dev apache2 apache2-mpm-prefork apache2-doc apache2-mpm-event apache2.2-common apache2-mpm-worker apache2-src apache2-threaded-dev apache2-mpm-perchild Architecture: source all i386 Version: 2.2.4-1 Distribution: unstable Urgency: medium Maintainer: Debian Apache Maintainers debian-apache@lists.debian.org Changed-By: Stefan Fritsch [EMAIL PROTECTED] Description: apache2- Next generation, scalable, extendable web server apache2-doc - documentation for apache2 apache2-mpm-event - Event driven model for Apache HTTPD apache2-mpm-perchild - Transitional package - please remove apache2-mpm-prefork - Traditional model for Apache HTTPD apache2-mpm-worker - High speed threaded model for Apache HTTPD apache2-prefork-dev - development headers for apache2 apache2-src - Apache source code apache2-threaded-dev - development headers for apache2 apache2-utils - utility programs for webservers apache2.2-common - Next generation, scalable, extendable web server Closes: 289289 291841 298689 305933 350286 350822 384682 391817 399056 410331 412580 414429 415698 418536 419539 427050 428887 430116 431048 431125 Changes: apache2 (2.2.4-1) unstable; urgency=medium . [ Stefan Fritsch ] * Urgency medium for security fix * Fix CVE-2007-1863: DoS in mod_cache * New upstream version (Closes: #427050) - Fixes proxy: error reading status line from
Bug#398223: marked as done (apache2: [notice] caught SIGTERM, shutting down)
Your message dated Sun, 01 Jul 2007 19:02:03 + with message-id [EMAIL PROTECTED] and subject line Bug#298689: fixed in apache2 2.2.4-1 has caused the attached Bug report to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is now your responsibility to reopen the Bug report if necessary, and/or fix the problem forthwith. (NB: If you are a system administrator and have no idea what I am talking about this indicates a serious mail system misconfiguration somewhere. Please contact me immediately.) Debian bug tracking system administrator (administrator, Debian Bugs database) ---BeginMessage--- Package: apache2 Version: 2.2.3-3 Severity: important Twice in the past two weeks apache2 has shut down spontaneously for no apparent reason. The error log ends with the following: [Sun Nov 12 06:29:15 2006] [warn] child process 13051 still did not exit, sending a SIGTERM [Sun Nov 12 06:29:17 2006] [warn] child process 13051 still did not exit, sending a SIGTERM [Sun Nov 12 06:29:19 2006] [warn] child process 13051 still did not exit, sending a SIGTERM [Sun Nov 12 06:29:21 2006] [error] child process 13051 still did not exit, sending a SIGKILL [Sun Nov 12 06:29:22 2006] [notice] caught SIGTERM, shutting down And can see no other signs of problems, it just isn't running any more. The only thing that has changed recently is that I have add SSL to one of my websites. -- System Information: Debian Release: testing/unstable APT prefers testing APT policy: (990, 'testing') Architecture: i386 (i686) Shell: /bin/sh linked to /bin/bash Kernel: Linux 2.6.17-tp600e.2 Locale: LANG=en_US, LC_CTYPE=en_US (charmap=ISO-8859-1) Versions of packages apache2 depends on: ii apache2-mpm-prefork 2.2.3-3Traditional model for Apache HTTPD apache2 recommends no packages. -- no debconf information ---End Message--- ---BeginMessage--- Source: apache2 Source-Version: 2.2.4-1 We believe that the bug you reported is fixed in the latest version of apache2, which is due to be installed in the Debian FTP archive: apache2-doc_2.2.4-1_all.deb to pool/main/a/apache2/apache2-doc_2.2.4-1_all.deb apache2-mpm-event_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-event_2.2.4-1_i386.deb apache2-mpm-perchild_2.2.4-1_all.deb to pool/main/a/apache2/apache2-mpm-perchild_2.2.4-1_all.deb apache2-mpm-prefork_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-prefork_2.2.4-1_i386.deb apache2-mpm-worker_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-worker_2.2.4-1_i386.deb apache2-prefork-dev_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-prefork-dev_2.2.4-1_i386.deb apache2-src_2.2.4-1_all.deb to pool/main/a/apache2/apache2-src_2.2.4-1_all.deb apache2-threaded-dev_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-threaded-dev_2.2.4-1_i386.deb apache2-utils_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-utils_2.2.4-1_i386.deb apache2.2-common_2.2.4-1_i386.deb to pool/main/a/apache2/apache2.2-common_2.2.4-1_i386.deb apache2_2.2.4-1.diff.gz to pool/main/a/apache2/apache2_2.2.4-1.diff.gz apache2_2.2.4-1.dsc to pool/main/a/apache2/apache2_2.2.4-1.dsc apache2_2.2.4-1_all.deb to pool/main/a/apache2/apache2_2.2.4-1_all.deb apache2_2.2.4.orig.tar.gz to pool/main/a/apache2/apache2_2.2.4.orig.tar.gz A summary of the changes between this version and the previous one is attached. Thank you for reporting the bug, which will now be closed. If you have further comments please address them to [EMAIL PROTECTED], and the maintainer will reopen the bug report if appropriate. Debian distribution maintenance software pp. Stefan Fritsch [EMAIL PROTECTED] (supplier of updated apache2 package) (This message was generated automatically at their request; if you believe that there is a problem with it please contact the archive administrators by mailing [EMAIL PROTECTED]) -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Format: 1.7 Date: Sun, 01 Jul 2007 19:57:51 +0200 Source: apache2 Binary: apache2-utils apache2-prefork-dev apache2 apache2-mpm-prefork apache2-doc apache2-mpm-event apache2.2-common apache2-mpm-worker apache2-src apache2-threaded-dev apache2-mpm-perchild Architecture: source all i386 Version: 2.2.4-1 Distribution: unstable Urgency: medium Maintainer: Debian Apache Maintainers debian-apache@lists.debian.org Changed-By: Stefan Fritsch [EMAIL PROTECTED] Description: apache2- Next generation, scalable, extendable web server apache2-doc - documentation for apache2 apache2-mpm-event - Event driven model for Apache HTTPD apache2-mpm-perchild - Transitional package - please remove apache2-mpm-prefork - Traditional model for Apache HTTPD apache2-mpm-worker - High speed threaded model for Apache HTTPD apache2-prefork-dev - development headers for apache2 apache2-src - Apache source code apache2-threaded-dev - development headers for apache2 apache2-utils - utility programs for webservers apache2.2-common - Next
Bug#368109: marked as done (apache2-common: Move the Include /etc/apache2/conf.d/[^.#]* to the end)
Your message dated Sun, 01 Jul 2007 19:02:04 + with message-id [EMAIL PROTECTED] and subject line Bug#305933: fixed in apache2 2.2.4-1 has caused the attached Bug report to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is now your responsibility to reopen the Bug report if necessary, and/or fix the problem forthwith. (NB: If you are a system administrator and have no idea what I am talking about this indicates a serious mail system misconfiguration somewhere. Please contact me immediately.) Debian bug tracking system administrator (administrator, Debian Bugs database) ---BeginMessage--- Package: apache2-common Version: 2.0.55-4 Severity: normal The following two lines should be moved to the bottom of the apache2.conf so that it is easier to override the default directives in apache2.conf. This will make it easier not to have to edit the shipped defaults. # Include generic snippets of statements Include /etc/apache2/conf.d/[^.#]* These lines should be right above the virtual host configurations lines at the end of apache2.conf. -- System Information: Debian Release: testing/unstable APT prefers unstable APT policy: (990, 'unstable'), (500, 'testing') Architecture: i386 (i686) Shell: /bin/sh linked to /bin/bash Kernel: Linux 2.6.14-1-k7 Locale: LANG=C, LC_CTYPE=C (charmap=ANSI_X3.4-1968) (ignored: LC_ALL set to C) Versions of packages apache2-common depends on: ii apache2-utils 2.0.55-4 utility programs for webservers ii debconf 1.5.1 Debian configuration management sy ii debianutils 2.16 Miscellaneous utilities specific t ii libc6 2.3.6-7GNU C Library: Shared libraries ii libdb4.3 4.3.29-5 Berkeley v4.3 Database Libraries [ ii libexpat1 1.95.8-3.2 XML parsing C library - runtime li ii libgcc1 1:4.1.0-4 GCC support library ii libmagic1 4.17-1 File type determination library us ii lsb-base 3.1-5 Linux Standard Base 3.1 init scrip ii mime-support 3.36-1 MIME files 'mime.types' 'mailcap ii net-tools 1.60-17The NET-3 networking toolkit ii openssl 0.9.8b-2 Secure Socket Layer (SSL) binary a ii ssl-cert 1.0.12 Simple debconf wrapper for openssl apache2-common recommends no packages. -- no debconf information ---End Message--- ---BeginMessage--- Source: apache2 Source-Version: 2.2.4-1 We believe that the bug you reported is fixed in the latest version of apache2, which is due to be installed in the Debian FTP archive: apache2-doc_2.2.4-1_all.deb to pool/main/a/apache2/apache2-doc_2.2.4-1_all.deb apache2-mpm-event_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-event_2.2.4-1_i386.deb apache2-mpm-perchild_2.2.4-1_all.deb to pool/main/a/apache2/apache2-mpm-perchild_2.2.4-1_all.deb apache2-mpm-prefork_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-prefork_2.2.4-1_i386.deb apache2-mpm-worker_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-worker_2.2.4-1_i386.deb apache2-prefork-dev_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-prefork-dev_2.2.4-1_i386.deb apache2-src_2.2.4-1_all.deb to pool/main/a/apache2/apache2-src_2.2.4-1_all.deb apache2-threaded-dev_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-threaded-dev_2.2.4-1_i386.deb apache2-utils_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-utils_2.2.4-1_i386.deb apache2.2-common_2.2.4-1_i386.deb to pool/main/a/apache2/apache2.2-common_2.2.4-1_i386.deb apache2_2.2.4-1.diff.gz to pool/main/a/apache2/apache2_2.2.4-1.diff.gz apache2_2.2.4-1.dsc to pool/main/a/apache2/apache2_2.2.4-1.dsc apache2_2.2.4-1_all.deb to pool/main/a/apache2/apache2_2.2.4-1_all.deb apache2_2.2.4.orig.tar.gz to pool/main/a/apache2/apache2_2.2.4.orig.tar.gz A summary of the changes between this version and the previous one is attached. Thank you for reporting the bug, which will now be closed. If you have further comments please address them to [EMAIL PROTECTED], and the maintainer will reopen the bug report if appropriate. Debian distribution maintenance software pp. Stefan Fritsch [EMAIL PROTECTED] (supplier of updated apache2 package) (This message was generated automatically at their request; if you believe that there is a problem with it please contact the archive administrators by mailing [EMAIL PROTECTED]) -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Format: 1.7 Date: Sun, 01 Jul 2007 19:57:51 +0200 Source: apache2 Binary: apache2-utils apache2-prefork-dev apache2 apache2-mpm-prefork apache2-doc apache2-mpm-event apache2.2-common apache2-mpm-worker apache2-src apache2-threaded-dev apache2-mpm-perchild Architecture: source all i386 Version: 2.2.4-1 Distribution: unstable Urgency: medium Maintainer: Debian Apache Maintainers
Bug#291841: marked as done (Wrong/unnecessary directory/file permissions /var/log/apache2)
Your message dated Sun, 01 Jul 2007 19:02:03 + with message-id [EMAIL PROTECTED] and subject line Bug#291841: fixed in apache2 2.2.4-1 has caused the attached Bug report to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is now your responsibility to reopen the Bug report if necessary, and/or fix the problem forthwith. (NB: If you are a system administrator and have no idea what I am talking about this indicates a serious mail system misconfiguration somewhere. Please contact me immediately.) Debian bug tracking system administrator (administrator, Debian Bugs database) ---BeginMessage--- Package: apache2 Version: 2.0.52-3 Severity: normal Hi, The /var/log/apache2 dir has permissions drwxr-xr-x (root:root) Most log files have -rw-r- (root:adm) but the oldest log files have -rw-r--r-- (root:root) The o+rx on the directory isn't necessary and should thus be dropped. The o+r on the oldest logs is wrong too. -- System Information: Debian Release: 3.1 APT prefers testing APT policy: (500, 'testing') Architecture: i386 (i686) Kernel: Linux 2.6.7-1-686-smp Locale: LANG=en_US.ISO-8859-15, LC_CTYPE=en_US.ISO-8859-15 (charmap=ISO-8859-15) Versions of packages apache2 depends on: ii apache2-mpm-prefork 2.0.52-3 Traditional model for Apache2 -- no debconf information ---End Message--- ---BeginMessage--- Source: apache2 Source-Version: 2.2.4-1 We believe that the bug you reported is fixed in the latest version of apache2, which is due to be installed in the Debian FTP archive: apache2-doc_2.2.4-1_all.deb to pool/main/a/apache2/apache2-doc_2.2.4-1_all.deb apache2-mpm-event_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-event_2.2.4-1_i386.deb apache2-mpm-perchild_2.2.4-1_all.deb to pool/main/a/apache2/apache2-mpm-perchild_2.2.4-1_all.deb apache2-mpm-prefork_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-prefork_2.2.4-1_i386.deb apache2-mpm-worker_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-worker_2.2.4-1_i386.deb apache2-prefork-dev_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-prefork-dev_2.2.4-1_i386.deb apache2-src_2.2.4-1_all.deb to pool/main/a/apache2/apache2-src_2.2.4-1_all.deb apache2-threaded-dev_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-threaded-dev_2.2.4-1_i386.deb apache2-utils_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-utils_2.2.4-1_i386.deb apache2.2-common_2.2.4-1_i386.deb to pool/main/a/apache2/apache2.2-common_2.2.4-1_i386.deb apache2_2.2.4-1.diff.gz to pool/main/a/apache2/apache2_2.2.4-1.diff.gz apache2_2.2.4-1.dsc to pool/main/a/apache2/apache2_2.2.4-1.dsc apache2_2.2.4-1_all.deb to pool/main/a/apache2/apache2_2.2.4-1_all.deb apache2_2.2.4.orig.tar.gz to pool/main/a/apache2/apache2_2.2.4.orig.tar.gz A summary of the changes between this version and the previous one is attached. Thank you for reporting the bug, which will now be closed. If you have further comments please address them to [EMAIL PROTECTED], and the maintainer will reopen the bug report if appropriate. Debian distribution maintenance software pp. Stefan Fritsch [EMAIL PROTECTED] (supplier of updated apache2 package) (This message was generated automatically at their request; if you believe that there is a problem with it please contact the archive administrators by mailing [EMAIL PROTECTED]) -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Format: 1.7 Date: Sun, 01 Jul 2007 19:57:51 +0200 Source: apache2 Binary: apache2-utils apache2-prefork-dev apache2 apache2-mpm-prefork apache2-doc apache2-mpm-event apache2.2-common apache2-mpm-worker apache2-src apache2-threaded-dev apache2-mpm-perchild Architecture: source all i386 Version: 2.2.4-1 Distribution: unstable Urgency: medium Maintainer: Debian Apache Maintainers debian-apache@lists.debian.org Changed-By: Stefan Fritsch [EMAIL PROTECTED] Description: apache2- Next generation, scalable, extendable web server apache2-doc - documentation for apache2 apache2-mpm-event - Event driven model for Apache HTTPD apache2-mpm-perchild - Transitional package - please remove apache2-mpm-prefork - Traditional model for Apache HTTPD apache2-mpm-worker - High speed threaded model for Apache HTTPD apache2-prefork-dev - development headers for apache2 apache2-src - Apache source code apache2-threaded-dev - development headers for apache2 apache2-utils - utility programs for webservers apache2.2-common - Next generation, scalable, extendable web server Closes: 289289 291841 298689 305933 350286 350822 384682 391817 399056 410331 412580 414429 415698 418536 419539 427050 428887 430116 431048 431125 Changes: apache2 (2.2.4-1) unstable; urgency=medium . [ Stefan Fritsch ] * Urgency medium for security fix * Fix CVE-2007-1863: DoS in mod_cache * New upstream version (Closes: #427050) - Fixes proxy: error reading status line from remote server (Closes: #410331) * Fix CVE-2007-1862: mod_mem_cache DoS
Bug#431125: marked as done (apache2.2-common: shouldn't depend on procps on the Hurd)
Your message dated Sun, 01 Jul 2007 19:02:04 + with message-id [EMAIL PROTECTED] and subject line Bug#431125: fixed in apache2 2.2.4-1 has caused the attached Bug report to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is now your responsibility to reopen the Bug report if necessary, and/or fix the problem forthwith. (NB: If you are a system administrator and have no idea what I am talking about this indicates a serious mail system misconfiguration somewhere. Please contact me immediately.) Debian bug tracking system administrator (administrator, Debian Bugs database) ---BeginMessage--- Package: apache2.2-common Version: 2.2.3-5 Severity: important Hi, The Hurd doesn't have the procps package, because ps such are provided by package hurd. apache2.2-common should hence not depend on procps on hurd-i386. Samuel -- System Information: Debian Release: lenny/sid APT prefers testing APT policy: (990, 'testing'), (500, 'unstable'), (500, 'stable'), (1, 'experimental') Architecture: i386 (i686) Kernel: Linux 2.6.18-xen Locale: [EMAIL PROTECTED], [EMAIL PROTECTED] (charmap=ISO-8859-15) Shell: /bin/sh linked to /bin/bash Versions of packages apache2.2-common depends on: ii apache2-utils 2.2.3-4utility programs for webservers ii libmagic1 4.21-1 File type determination library us ii lsb-base 3.1-23.1 Linux Standard Base 3.1 init scrip ii mime-support 3.39-1 MIME files 'mime.types' 'mailcap ii net-tools 1.60-17The NET-3 networking toolkit ii procps1:3.2.7-3 /proc file system utilities apache2.2-common recommends no packages. ---End Message--- ---BeginMessage--- Source: apache2 Source-Version: 2.2.4-1 We believe that the bug you reported is fixed in the latest version of apache2, which is due to be installed in the Debian FTP archive: apache2-doc_2.2.4-1_all.deb to pool/main/a/apache2/apache2-doc_2.2.4-1_all.deb apache2-mpm-event_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-event_2.2.4-1_i386.deb apache2-mpm-perchild_2.2.4-1_all.deb to pool/main/a/apache2/apache2-mpm-perchild_2.2.4-1_all.deb apache2-mpm-prefork_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-prefork_2.2.4-1_i386.deb apache2-mpm-worker_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-worker_2.2.4-1_i386.deb apache2-prefork-dev_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-prefork-dev_2.2.4-1_i386.deb apache2-src_2.2.4-1_all.deb to pool/main/a/apache2/apache2-src_2.2.4-1_all.deb apache2-threaded-dev_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-threaded-dev_2.2.4-1_i386.deb apache2-utils_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-utils_2.2.4-1_i386.deb apache2.2-common_2.2.4-1_i386.deb to pool/main/a/apache2/apache2.2-common_2.2.4-1_i386.deb apache2_2.2.4-1.diff.gz to pool/main/a/apache2/apache2_2.2.4-1.diff.gz apache2_2.2.4-1.dsc to pool/main/a/apache2/apache2_2.2.4-1.dsc apache2_2.2.4-1_all.deb to pool/main/a/apache2/apache2_2.2.4-1_all.deb apache2_2.2.4.orig.tar.gz to pool/main/a/apache2/apache2_2.2.4.orig.tar.gz A summary of the changes between this version and the previous one is attached. Thank you for reporting the bug, which will now be closed. If you have further comments please address them to [EMAIL PROTECTED], and the maintainer will reopen the bug report if appropriate. Debian distribution maintenance software pp. Stefan Fritsch [EMAIL PROTECTED] (supplier of updated apache2 package) (This message was generated automatically at their request; if you believe that there is a problem with it please contact the archive administrators by mailing [EMAIL PROTECTED]) -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Format: 1.7 Date: Sun, 01 Jul 2007 19:57:51 +0200 Source: apache2 Binary: apache2-utils apache2-prefork-dev apache2 apache2-mpm-prefork apache2-doc apache2-mpm-event apache2.2-common apache2-mpm-worker apache2-src apache2-threaded-dev apache2-mpm-perchild Architecture: source all i386 Version: 2.2.4-1 Distribution: unstable Urgency: medium Maintainer: Debian Apache Maintainers debian-apache@lists.debian.org Changed-By: Stefan Fritsch [EMAIL PROTECTED] Description: apache2- Next generation, scalable, extendable web server apache2-doc - documentation for apache2 apache2-mpm-event - Event driven model for Apache HTTPD apache2-mpm-perchild - Transitional package - please remove apache2-mpm-prefork - Traditional model for Apache HTTPD apache2-mpm-worker - High speed threaded model for Apache HTTPD apache2-prefork-dev - development headers for apache2 apache2-src - Apache source code apache2-threaded-dev - development headers for apache2 apache2-utils - utility programs for webservers apache2.2-common - Next generation, scalable, extendable web server Closes: 289289 291841 298689 305933 350286 350822 384682 391817 399056 410331 412580
Bug#305933: marked as done (move conf.d include in apache2.conf)
Your message dated Sun, 01 Jul 2007 19:02:04 + with message-id [EMAIL PROTECTED] and subject line Bug#305933: fixed in apache2 2.2.4-1 has caused the attached Bug report to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is now your responsibility to reopen the Bug report if necessary, and/or fix the problem forthwith. (NB: If you are a system administrator and have no idea what I am talking about this indicates a serious mail system misconfiguration somewhere. Please contact me immediately.) Debian bug tracking system administrator (administrator, Debian Bugs database) ---BeginMessage--- Package: apache2 Version: 2.0.53-5 Severity: wishlist conf.d is brilliant for local configuration, so you can have local changes, without changing the package provided conffiles, eliminating another maintaince overhead on upgrades. Problem is, that it is included almost in the beginning, so you cannot override values already set in apache2.conf - like HostnameLookups. Moving this down to the end would help this, but I'm not sure how risky it would be. Right before the sites-enabled include would fit me perfectly :-) (Checking apache2.conf again...) One might argue httpd.conf is the place for user configuration - but it has exactly the same problem. -- System Information: Debian Release: 3.1 APT prefers testing APT policy: (1000, 'testing'), (500, 'unstable') Architecture: i386 (i686) Kernel: Linux 2.6.11-s7-up Locale: LANG=C, LC_CTYPE=C (charmap=ANSI_X3.4-1968) Versions of packages apache2 depends on: ii apache2-mpm-worker2.0.53-5 high speed threaded model for Apac -- no debconf information ---End Message--- ---BeginMessage--- Source: apache2 Source-Version: 2.2.4-1 We believe that the bug you reported is fixed in the latest version of apache2, which is due to be installed in the Debian FTP archive: apache2-doc_2.2.4-1_all.deb to pool/main/a/apache2/apache2-doc_2.2.4-1_all.deb apache2-mpm-event_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-event_2.2.4-1_i386.deb apache2-mpm-perchild_2.2.4-1_all.deb to pool/main/a/apache2/apache2-mpm-perchild_2.2.4-1_all.deb apache2-mpm-prefork_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-prefork_2.2.4-1_i386.deb apache2-mpm-worker_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-worker_2.2.4-1_i386.deb apache2-prefork-dev_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-prefork-dev_2.2.4-1_i386.deb apache2-src_2.2.4-1_all.deb to pool/main/a/apache2/apache2-src_2.2.4-1_all.deb apache2-threaded-dev_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-threaded-dev_2.2.4-1_i386.deb apache2-utils_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-utils_2.2.4-1_i386.deb apache2.2-common_2.2.4-1_i386.deb to pool/main/a/apache2/apache2.2-common_2.2.4-1_i386.deb apache2_2.2.4-1.diff.gz to pool/main/a/apache2/apache2_2.2.4-1.diff.gz apache2_2.2.4-1.dsc to pool/main/a/apache2/apache2_2.2.4-1.dsc apache2_2.2.4-1_all.deb to pool/main/a/apache2/apache2_2.2.4-1_all.deb apache2_2.2.4.orig.tar.gz to pool/main/a/apache2/apache2_2.2.4.orig.tar.gz A summary of the changes between this version and the previous one is attached. Thank you for reporting the bug, which will now be closed. If you have further comments please address them to [EMAIL PROTECTED], and the maintainer will reopen the bug report if appropriate. Debian distribution maintenance software pp. Stefan Fritsch [EMAIL PROTECTED] (supplier of updated apache2 package) (This message was generated automatically at their request; if you believe that there is a problem with it please contact the archive administrators by mailing [EMAIL PROTECTED]) -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Format: 1.7 Date: Sun, 01 Jul 2007 19:57:51 +0200 Source: apache2 Binary: apache2-utils apache2-prefork-dev apache2 apache2-mpm-prefork apache2-doc apache2-mpm-event apache2.2-common apache2-mpm-worker apache2-src apache2-threaded-dev apache2-mpm-perchild Architecture: source all i386 Version: 2.2.4-1 Distribution: unstable Urgency: medium Maintainer: Debian Apache Maintainers debian-apache@lists.debian.org Changed-By: Stefan Fritsch [EMAIL PROTECTED] Description: apache2- Next generation, scalable, extendable web server apache2-doc - documentation for apache2 apache2-mpm-event - Event driven model for Apache HTTPD apache2-mpm-perchild - Transitional package - please remove apache2-mpm-prefork - Traditional model for Apache HTTPD apache2-mpm-worker - High speed threaded model for Apache HTTPD apache2-prefork-dev - development headers for apache2 apache2-src - Apache source code apache2-threaded-dev - development headers for apache2 apache2-utils - utility programs for webservers apache2.2-common - Next generation, scalable, extendable web server Closes: 289289 291841 298689 305933 350286 350822 384682 391817 399056 410331 412580 414429 415698 418536 419539 427050 428887 430116 431048 431125 Changes:
Bug#350822: marked as done (apache2-doc: add Readme on how to browse the docs)
Your message dated Sun, 01 Jul 2007 19:02:04 + with message-id [EMAIL PROTECTED] and subject line Bug#350822: fixed in apache2 2.2.4-1 has caused the attached Bug report to be marked as done. This means that you claim that the problem has been dealt with. If this is not the case it is now your responsibility to reopen the Bug report if necessary, and/or fix the problem forthwith. (NB: If you are a system administrator and have no idea what I am talking about this indicates a serious mail system misconfiguration somewhere. Please contact me immediately.) Debian bug tracking system administrator (administrator, Debian Bugs database) ---BeginMessage--- Package: apache2-doc Version: 2.0.53-5 Severity: wishlist Make a /usr/share/doc/apache2-doc/README.debian saying how one is supposed to read the documentation. E.g., one hasn't started apache yet as one should always read documents first before operating equipment. One does $ lynx file:///usr/share/doc/apache2-doc/manual/index.html.en doesn't work. Firefox OK but clicking links breaks. Well then tell the user how to start apache and what localhost URL to use to browse the docs. ---End Message--- ---BeginMessage--- Source: apache2 Source-Version: 2.2.4-1 We believe that the bug you reported is fixed in the latest version of apache2, which is due to be installed in the Debian FTP archive: apache2-doc_2.2.4-1_all.deb to pool/main/a/apache2/apache2-doc_2.2.4-1_all.deb apache2-mpm-event_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-event_2.2.4-1_i386.deb apache2-mpm-perchild_2.2.4-1_all.deb to pool/main/a/apache2/apache2-mpm-perchild_2.2.4-1_all.deb apache2-mpm-prefork_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-prefork_2.2.4-1_i386.deb apache2-mpm-worker_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-mpm-worker_2.2.4-1_i386.deb apache2-prefork-dev_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-prefork-dev_2.2.4-1_i386.deb apache2-src_2.2.4-1_all.deb to pool/main/a/apache2/apache2-src_2.2.4-1_all.deb apache2-threaded-dev_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-threaded-dev_2.2.4-1_i386.deb apache2-utils_2.2.4-1_i386.deb to pool/main/a/apache2/apache2-utils_2.2.4-1_i386.deb apache2.2-common_2.2.4-1_i386.deb to pool/main/a/apache2/apache2.2-common_2.2.4-1_i386.deb apache2_2.2.4-1.diff.gz to pool/main/a/apache2/apache2_2.2.4-1.diff.gz apache2_2.2.4-1.dsc to pool/main/a/apache2/apache2_2.2.4-1.dsc apache2_2.2.4-1_all.deb to pool/main/a/apache2/apache2_2.2.4-1_all.deb apache2_2.2.4.orig.tar.gz to pool/main/a/apache2/apache2_2.2.4.orig.tar.gz A summary of the changes between this version and the previous one is attached. Thank you for reporting the bug, which will now be closed. If you have further comments please address them to [EMAIL PROTECTED], and the maintainer will reopen the bug report if appropriate. Debian distribution maintenance software pp. Stefan Fritsch [EMAIL PROTECTED] (supplier of updated apache2 package) (This message was generated automatically at their request; if you believe that there is a problem with it please contact the archive administrators by mailing [EMAIL PROTECTED]) -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Format: 1.7 Date: Sun, 01 Jul 2007 19:57:51 +0200 Source: apache2 Binary: apache2-utils apache2-prefork-dev apache2 apache2-mpm-prefork apache2-doc apache2-mpm-event apache2.2-common apache2-mpm-worker apache2-src apache2-threaded-dev apache2-mpm-perchild Architecture: source all i386 Version: 2.2.4-1 Distribution: unstable Urgency: medium Maintainer: Debian Apache Maintainers debian-apache@lists.debian.org Changed-By: Stefan Fritsch [EMAIL PROTECTED] Description: apache2- Next generation, scalable, extendable web server apache2-doc - documentation for apache2 apache2-mpm-event - Event driven model for Apache HTTPD apache2-mpm-perchild - Transitional package - please remove apache2-mpm-prefork - Traditional model for Apache HTTPD apache2-mpm-worker - High speed threaded model for Apache HTTPD apache2-prefork-dev - development headers for apache2 apache2-src - Apache source code apache2-threaded-dev - development headers for apache2 apache2-utils - utility programs for webservers apache2.2-common - Next generation, scalable, extendable web server Closes: 289289 291841 298689 305933 350286 350822 384682 391817 399056 410331 412580 414429 415698 418536 419539 427050 428887 430116 431048 431125 Changes: apache2 (2.2.4-1) unstable; urgency=medium . [ Stefan Fritsch ] * Urgency medium for security fix * Fix CVE-2007-1863: DoS in mod_cache * New upstream version (Closes: #427050) - Fixes proxy: error reading status line from remote server (Closes: #410331) * Fix CVE-2007-1862: mod_mem_cache DoS (introduced in 2.2.4) * Change logrotate script to use reload instead of restart. (Closes: #298689) * chmod o-rx /var/log/apache2 (Closes: #291841) * chmod o-x suexec (Closes: #431048) * Update patch for