From bdb295e7e7499010199c171c4daffa3e173d95ac Mon Sep 17 00:00:00 2001 From: Síle Ekaterin Liszka Date: Sun, 4 Dec 2022 22:42:29 +0000 Subject: user/apache-httpd: upgrade to 2.4.54, fix a bunch of CVEs --- user/apache-httpd/APKBUILD | 12 ++++++++++-- 1 file changed, 10 insertions(+), 2 deletions(-) (limited to 'user') diff --git a/user/apache-httpd/APKBUILD b/user/apache-httpd/APKBUILD index 494e35dc6..34a80532b 100644 --- a/user/apache-httpd/APKBUILD +++ b/user/apache-httpd/APKBUILD @@ -2,7 +2,7 @@ # Maintainer: Síle Ekaterin Liszka pkgname=apache-httpd _pkgreal=httpd -pkgver=2.4.53 +pkgver=2.4.54 pkgrel=0 pkgdesc="Open-source HTTP server" url="https://httpd.apache.org" @@ -37,6 +37,14 @@ builddir="$srcdir/$_pkgreal-$pkgver" options="suid !check" # secfixes: http_server +# 2.4.54-r0: +# - CVE-2022-26377 +# - CVE-2022-28614 +# - CVE-2022-28615 +# - CVE-2022-29404 +# - CVE-2022-30522 +# - CVE-2022-30556 +# - CVE-2022-31813 # 2.4.52-r0: # - CVE-2020-13950 # - CVE-2020-35452 @@ -163,7 +171,7 @@ ldap() { "$subpkgdir"/usr/libexec/apache2 } -sha512sums="07ef59594251a30a864cc9cc9a58ab788c2d006cef85b728f29533243927c63cb063e0867f2a306f37324c3adb9cf7dcb2402f3516b05c2c6f32469d475dd756 httpd-2.4.53.tar.bz2 +sha512sums="228493b2ff32c4142c6e484d304f2ea12e467498605fe12adce2b61388d8efe7b2e96ae2fd0abd1dc88a5f12d625e007d8da0ae5628cff2a5272806754f41e18 httpd-2.4.54.tar.bz2 c8bc2bb06ae51b0956e0ee673e80c444551c9b33dfcbb845106477c46d9e52786a8896022e1f00102264fecdf66e35e47fc6cf0abe9836fa536735cff4e6adf4 adelie.layout 336e81fa0d08f8fbe6243d52bd59b12cf2e925deb49b29d7a22953c5d40a951b6b753f51e5a396752cb0bbaf1cf25b1358902f375fb65639d00e62db7ae55ff2 apache-httpd.confd 5762d53f39ce7ecd730e05ddf6c063ede65cd75b9e7d67217784c80366646491ef9474306e8eb119c8fb5b4358407b07636a4e9cd82325d8df4e3e00dabc3459 apache-httpd.initd -- cgit v1.2.3-70-g09d2