From 0b6c2a5870437d568384bf2738da5b394e49e706 Mon Sep 17 00:00:00 2001 From: Andy Postnikov Date: Fri, 17 Sep 2021 22:38:49 +0300 Subject: main/apache2: security upgrade to 2.4.49 - CVE-2021-40438 - CVE-2021-39275 - CVE-2021-36160 - CVE-2021-34798 - CVE-2021-33193 --- main/apache2/APKBUILD | 10 ++++++++-- 1 file changed, 8 insertions(+), 2 deletions(-) diff --git a/main/apache2/APKBUILD b/main/apache2/APKBUILD index bce77b3b37e..9a6c9ac567c 100644 --- a/main/apache2/APKBUILD +++ b/main/apache2/APKBUILD @@ -2,7 +2,7 @@ # Contributor: Valery Kartel pkgname=apache2 _pkgreal=httpd -pkgver=2.4.48 +pkgver=2.4.49 pkgrel=0 pkgdesc="A high performance Unix-based HTTP server" url="https://httpd.apache.org/" @@ -50,6 +50,12 @@ options="suid" builddir="$srcdir"/$_pkgreal-$pkgver # secfixes: +# 2.4.49-r0: +# - CVE-2021-40438 +# - CVE-2021-39275 +# - CVE-2021-36160 +# - CVE-2021-34798 +# - CVE-2021-33193 # 2.4.48-r0: # - CVE-2019-17657 # - CVE-2020-13938 @@ -356,7 +362,7 @@ _lua() { _load_mods } sha512sums=" -6c250626f1e7d10428a92d984fd48ff841effcc8705f7816ab71b681bbd51d0012ad158dcd13763fe7d630311f2de258b27574603140d648be42796ab8326724 httpd-2.4.48.tar.bz2 +418e277232cf30a81d02b8554e31aaae6433bbea842bdb81e47a609469395cc4891183fb6ee02bd669edb2392c2007869b19da29f5998b8fd5c7d3142db310dd httpd-2.4.49.tar.bz2 8e62b101f90c67babe864bcb74f711656180b011df3fd4b541dc766b980b72aa409e86debf3559a55be359471c1cad81b8779ef3a55add8d368229fc7e9544fc apache2.confd 18e8859c7d99c4483792a5fd20127873aad8fa396cafbdb6f2c4253451ffe7a1093a3859ce719375e0769739c93704c88897bd087c63e1ef585e26dcc1f5dd9b apache2.logrotate 81a2d2a297d8049ba1b021b879ec863767149e056d9bdb2ac8acf63572b254935ec96c2e1580eba86639ea56433eec5c41341e4f1501f9072745dccdb3602701 apache2.initd -- cgit v1.2.3