Message Image  

AIX Open Source

 View Only
  • 1.  httpd security vulnerability fix

    Posted Fri June 19, 2020 08:43 AM
    httpd-2.4.43-1.aix6.1.ppc.rpm is now available on AIX Toolbox.

    This version of httpd has fixes for the following security vulnerabilities.

    CVE-2020-1927
    CVE-2020-1934

    You can use YUM to update to this version of package from the AIX Toolbox repository.

    ------------------------------
    SANGAMESH
    ------------------------------


  • 2.  RE: httpd security vulnerability fix

    Posted Tue October 06, 2020 01:12 PM
    Hi,
    When is the 2.4.46 patch going to come out?  We currently have a vulnerability with versions less than 2.4.44

    Fixed version : 2.4.46
    Solution - Upgrade to Apache version 2.4.44 or later.
    First Discovered - 2020-08-20

    Please advise when this will come out so I can update my comments on my vulnerability
    Thanks,
    Kris



    ------------------------------
    Richard Lynch
    ------------------------------



  • 3.  RE: httpd security vulnerability fix

    Posted Wed October 07, 2020 07:40 AM
    We have already started working on this. Hopefully it will be available in AIX Toolbox in 2-3 weeks.

    ------------------------------
    SANGAMESH
    ------------------------------



  • 4.  RE: httpd security vulnerability fix

    Posted Fri October 30, 2020 03:31 PM
    Is there any update on this?  It has been over 3 weeks​

    ------------------------------
    Richard Lynch
    ------------------------------



  • 5.  RE: httpd security vulnerability fix

    Posted Mon November 02, 2020 01:23 AM
    httpd-2.4.46 is now available in Toolbox.
    https://public.dhe.ibm.com/aix/freeSoftware/aixtoolbox/RPMS/ppc/httpd/
    You can also use yum to update it.

    ------------------------------
    Ayappan P
    ------------------------------