-------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2021-5d2d4b6ac5 2021-10-07 17:17:56.418123 --------------------------------------------------------------------------------
Name : httpd Product : Fedora 34 Version : 2.4.50 Release : 1.fc34 URL : https://httpd.apache.org/ Summary : Apache HTTP Server Description : The Apache HTTP Server is a powerful, efficient, and extensible web server.
-------------------------------------------------------------------------------- Update Information:
- version update to 2.4.50 - security update (CVE-2021-41524 + CVE-2021-33193) -------------------------------------------------------------------------------- ChangeLog:
* Tue Oct 5 2021 Lubo�� Uhliarik luhliari@redhat.com - 2.4.50-1 - new version 2.4.50 * Wed Sep 22 2021 Lubo�� Uhliarik luhliari@redhat.com - 2.4.49-3 - Rebuilt for CI testing -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1996514 - CVE-2021-33193 httpd: Request splitting via HTTP/2 method injection and mod_proxy [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1996514 [ 2 ] Bug #2010554 - httpd-2.4.50 is available https://bugzilla.redhat.com/show_bug.cgi?id=2010554 [ 3 ] Bug #2010935 - CVE-2021-41524 httpd: NULL pointer dereference via crafted request during HTTP/2 request processing [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2010935 --------------------------------------------------------------------------------
This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2021-5d2d4b6ac5' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label
All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys --------------------------------------------------------------------------------