[El-errata] ELSA-2012-0323 Moderate: Oracle Linux 5 httpd security update

Errata Announcements for Oracle Linux el-errata at oss.oracle.com
Fri Mar 9 15:29:04 PST 2012


Oracle Linux Security Advisory ELSA-2012-0323

https://rhn.redhat.com/errata/RHSA-2012-0323.html

The following updated rpms for Oracle Linux 5 have been uploaded to the 
Unbreakable Linux Network:

i386:
httpd-2.2.3-63.0.1.el5_8.1.i386.rpm
httpd-devel-2.2.3-63.0.1.el5_8.1.i386.rpm
httpd-manual-2.2.3-63.0.1.el5_8.1.i386.rpm
mod_ssl-2.2.3-63.0.1.el5_8.1.i386.rpm

x86_64:
httpd-2.2.3-63.0.1.el5_8.1.x86_64.rpm
httpd-devel-2.2.3-63.0.1.el5_8.1.i386.rpm
httpd-devel-2.2.3-63.0.1.el5_8.1.x86_64.rpm
httpd-manual-2.2.3-63.0.1.el5_8.1.x86_64.rpm
mod_ssl-2.2.3-63.0.1.el5_8.1.x86_64.rpm

ia64:
httpd-2.2.3-63.0.1.el5_8.1.ia64.rpm
httpd-devel-2.2.3-63.0.1.el5_8.1.ia64.rpm
httpd-manual-2.2.3-63.0.1.el5_8.1.ia64.rpm
mod_ssl-2.2.3-63.0.1.el5_8.1.ia64.rpm


SRPMS:
http://oss.oracle.com/ol5/SRPMS-updates/httpd-2.2.3-63.0.1.el5_8.1.src.rpm


Description of changes:

[2.2.3-63.0.1.el5_8.1]
- Fix mod_ssl always performing full renegotiation (orabug 12423387)
- replace index.html with Oracle's index page oracle_index.html
- update vstring and distro in specfile

[2.2.3-63.1]
- add security fixes for CVE-2012-0053, CVE-2012-0031, CVE-2011-3607 
(#787596)
- remove patch for CVE-2011-3638, obviated by fix for CVE-2011-3639





More information about the El-errata mailing list