Path to this page:
Subject: CVS commit: [pkgsrc-2016Q2] pkgsrc/www/apache24
From: S.P.Zeidler
Date: 2016-07-20 06:59:21
Message id: 20160720045921.5B40AFBB5@cvs.NetBSD.org
Log Message:
Pullup ticket #5059 - requested by taca
www/apache24: security update
Revisions pulled up:
- www/apache24/Makefile 1.46
- www/apache24/PLIST 1.22
- www/apache24/distinfo 1.25
-------------------------------------------------------------------
Module Name: pkgsrc
Committed By: taca
Date: Tue Jul 5 16:13:53 UTC 2016
Modified Files:
pkgsrc/www/apache24: Makefile PLIST distinfo
Log Message:
Update apache24 to 2.4.23.
(NOTE: Versions 2.4.22 and 2.4.21 were not released.)
Changes from 2.4.20 are too many to write here, please refer CHANGES file.
And Apache 2.4.23 fixes CVE-2016-4979; X509 Client certificate based
authentication can be bypassed when HTTP/2 is used.
To generate a diff of this commit:
cvs rdiff -u -r1.45 -r1.46 pkgsrc/www/apache24/Makefile
cvs rdiff -u -r1.21 -r1.22 pkgsrc/www/apache24/PLIST
cvs rdiff -u -r1.24 -r1.25 pkgsrc/www/apache24/distinfo
Files: