Hey I've got a question. How serious are the security holes in Apache
1.3.26, which led to the release of 1.3.27 a couple weeks ago?

Michael Martinez



> -----Original Message-----
> From: Daniel Lim [mailto:Daniel.Lim@;dpws.nsw.gov.au]
> Sent: Monday, November 11, 2002 10:30 PM
> To: [EMAIL PROTECTED]; [EMAIL PROTECTED]
> Cc: [EMAIL PROTECTED]
> Subject: RE: apache upgrade
> 
> 
> Thank you so much. It's fixed to 1.3.26.
> 
> >>> [EMAIL PROTECTED] 12/11/2002 13:49:31 >>>
>     If you install the latest RedHat update of apache and do
> 
> rpm -q --changelog apache|head
> 
> you should see a line
> 
> - backport chunked encoding fix from 1.3.26
> 
> I'll bet that means RedHat gave its latest update of 1.3.22 the
> security
> fix normally attributed to 1.3.26.
> 
> On Tue, 12 Nov 2002, Daniel Lim wrote:
> 
> > 
> > Hi there,
> > I am looking for the latest RH Apache 1.3.26 or 1.3.27 RPM and have
> > searched through RH Security Alert site but the highest version I
> found
> > was 1.3.22. Can you please tell me where do I get .26 or .27 which I
> > believe has addressed the latest security issues according to latest
> > security advisory.
> > Much thanks.
> > 
> > Regards,
> > Daniel
> > 
> > >>> [EMAIL PROTECTED] 5/11/2002 2:57:46 >>>
> > I would not install the Apache 2.x series because a lot of modules
> > don't
> > work with it. Most apache web sites in the world are still using
> 1.3.x
> > because of this.
> > 
> > i would install either 1.3.26 or 1.3.27 both of which are the latest
> > security-enhanced version.
> > 
> > Michael Martinez
> > System Administrator
> > 
> > 
> > > -----Original Message-----
> > > From: Shane C Branch [mailto:scbranch@;barton.edu] 
> > > Sent: Monday, November 04, 2002 10:43 AM
> > > To: [EMAIL PROTECTED] 
> > > Subject: apache upgrade
> > > 
> > > 
> > > I want to upgrade my web server, but I can't seem to locate 
> > > the current 
> > > installation path. I know it has changed since rh6.2, but to what?
> > > Also, will I need to delete the current install, or will I be able
> to
> > 
> > > install apache 2.0 over the 1.3.x currently on the machine?
> > > -- 
> > > 
> > > Regards,
> > > 
> > > Shane
> > 
> 
> -- 
> Steven Yellin
> 
> 
> 
> _______________________________________________
> Seawolf-list mailing list
> [EMAIL PROTECTED] 
> https://listman.redhat.com/mailman/listinfo/seawolf-list 
> 
> 
> 
>  This e-mail message (and attachments) is confidential, and / 
> or privileged and is intended for the use of the addressee 
> only. If you are not the intended recipient of this e-mail 
> you must not copy, distribute, take any action in reliance on 
> it or disclose it to anyone. Any confidentiality or privilege 
> is not waived or lost by reason of mistaken delivery to you. 
> DPWS is not responsible for any information not related to 
> the business of DPWS. If you have received this e-mail in 
> error please destroy the original and notify the sender.
> 
> For information on services offered by DPWS, please visit our 
> website at www.dpws.nsw.gov.au
> 
> 
> 
> 
> 
> _______________________________________________
> Seawolf-list mailing list
> [EMAIL PROTECTED]
> https://listman.redhat.com/mailman/listinfo/seawolf-list
> 



_______________________________________________
Seawolf-list mailing list
[EMAIL PROTECTED]
https://listman.redhat.com/mailman/listinfo/seawolf-list

Reply via email to