patches/packages/httpd-2.2.25-i486-1_slack13.0.txz
This update addresses two security issues:
* SECURITY: CVE-2013-1862 (cve.mitre.org) mod_rewrite: Ensure that client
data written to the RewriteLog is escaped to prevent terminal escape
sequences from entering the log file.
* SECURITY: CVE-2013-1896 (cve.mitre.org) mod_dav: Sending a MERGE request
against a
URI handled by mod_dav_svn with the source href (sent as part of
the request body as XML) pointing to a
URI that is not configured for DAV
will trigger a segfault.
For more information, see:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-1862
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-1896
(* Security fix *)