Bug#868467: apache2: CVE-2017-9788

2017-07-15 Thread Salvatore Bonaccorso
Source: apache2 Version: 2.4.10-10 Severity: important Tags: security upstream fixed-upstream Hi, the following vulnerability was published for apache2. CVE-2017-9788[0]: | In Apache httpd before 2.2.34 and 2.4.x before 2.4.27, the value | placeholder in [Proxy-]Authorization headers of type 'Di

Wheezy update of apache2?

2017-07-15 Thread Raphael Hertzog
Hello Stefan, The Debian LTS team would like to fix the security issues which are currently open in the Wheezy version of apache2: https://security-tracker.debian.org/tracker/CVE-2017-9788 Would you like to take care of this yourself? If yes, please follow the workflow we have defined here: http