Oval Definition:oval:org.opensuse.security:def:64064
Revision Date:2020-12-01Version:1
Title:Security update for apache2 (Moderate)
Description:

This update for apache2 fixes the following issues:

- CVE-2020-9490: Fixed a crash caused by a specially crafted value for the 'Cache-Digest' header in a HTTP/2 request (bsc#1175071). - CVE-2020-11985: IP address spoofing when proxying using mod_remoteip and mod_rewrite (bsc#1175072). - CVE-2020-11993: When trace/debug was enabled for the HTTP/2 module logging statements were made on the wrong connection (bsc#1175070).
Family:unixClass:patch
Status:Reference(s):1100687
1121624
1124211
1136334
1136498
1138529
1139383
1151229
1152856
1154212
1172175
1172176
1175070
1175071
1175072
1175476
1175530
1175674
1178588
CVE-2018-13785
CVE-2019-13685
CVE-2019-13686
CVE-2019-13687
CVE-2019-13688
CVE-2019-14562
CVE-2019-2894
CVE-2019-2933
CVE-2019-2945
CVE-2019-2949
CVE-2019-2958
CVE-2019-2962
CVE-2019-2964
CVE-2019-2973
CVE-2019-2975
CVE-2019-2978
CVE-2019-2981
CVE-2019-2983
CVE-2019-2987
CVE-2019-2988
CVE-2019-2989
CVE-2019-2992
CVE-2019-2999
CVE-2019-7317
CVE-2019-9836
CVE-2020-11076
CVE-2020-11077
CVE-2020-11985
CVE-2020-11993
CVE-2020-24368
CVE-2020-26950
CVE-2020-9490
openSUSE-SU-2019:1530-1
openSUSE-SU-2019:1770-1
openSUSE-SU-2019:2186-1
openSUSE-SU-2019:2687-1
openSUSE-SU-2020:1001-1
openSUSE-SU-2020:1674-1
SUSE-SU-2020:2714-1
Platform(s):openSUSE Leap 15.1
openSUSE Leap 15.2
SUSE Linux Enterprise Server 12 SP4-ESPOS
SUSE Linux Enterprise Server 12 SP4-LTSS
Product(s):
Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND Package Information
  • libpng16-1.6.34-lp151.3.3 is installed
  • OR libpng16-16-1.6.34-lp151.3.3 is installed
  • OR libpng16-16-32bit-1.6.34-lp151.3.3 is installed
  • OR libpng16-compat-devel-1.6.34-lp151.3.3 is installed
  • OR libpng16-compat-devel-32bit-1.6.34-lp151.3.3 is installed
  • OR libpng16-devel-1.6.34-lp151.3.3 is installed
  • OR libpng16-devel-32bit-1.6.34-lp151.3.3 is installed
  • OR libpng16-tools-1.6.34-lp151.3.3 is installed
  • Definition Synopsis
  • openSUSE Leap 15.2 is installed
  • AND Package Information
  • ruby2.5-rubygem-puma-4.3.5-lp152.4.3 is installed
  • OR ruby2.5-rubygem-puma-doc-4.3.5-lp152.4.3 is installed
  • OR rubygem-puma-4.3.5-lp152.4.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4-ESPOS is installed
  • AND Package Information
  • apache2-2.4.23-29.63 is installed
  • OR apache2-doc-2.4.23-29.63 is installed
  • OR apache2-example-pages-2.4.23-29.63 is installed
  • OR apache2-prefork-2.4.23-29.63 is installed
  • OR apache2-utils-2.4.23-29.63 is installed
  • OR apache2-worker-2.4.23-29.63 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4-LTSS is installed
  • AND Package Information
  • ovmf-2017+git1510945757.b2662641d5-3.29 is installed
  • OR ovmf-tools-2017+git1510945757.b2662641d5-3.29 is installed
  • OR qemu-ovmf-x86_64-2017+git1510945757.b2662641d5-3.29 is installed
  • OR qemu-uefi-aarch64-2017+git1510945757.b2662641d5-3.29 is installed
  • BACK