Re: [users@httpd] Patch request for Apache 2.4.x for the CVE-2016-4975

2018-11-05 Thread William A Rowe Jr
On Mon, Nov 5, 2018 at 1:25 AM Andrew Joshwa <4andrewjosh...@gmail.com> wrote: > Hi, > > Can anyone please help me to get the patch for the CVE-2016-4975. > Yes, http://www.apache.org/dist/httpd/, obtain and build the latest version of 2.4. Or if you want to avoid the TLS 1.3 enhancement, you may

[users@httpd] Patch request for Apache 2.4.x for the CVE-2016-4975

2018-11-04 Thread Andrew Joshwa
Hi, Can anyone please help me to get the patch for the CVE-2016-4975. I have found the below link for patch from internet. https://svn.apache.org/viewvc?view=revision&revision=1772678 However this contains many changes. Please let me know if we need to port all changes mentioned in above patch O