AIX Open Source

AIX Open Source

Share your experiences and connect with fellow developers to discover how to build and manage open source software for the AIX operating system

 View Only
  • 1.  httpd security vulnerability fix

    Posted Fri June 19, 2020 08:43 AM
    httpd-2.4.43-1.aix6.1.ppc.rpm is now available on AIX Toolbox.

    This version of httpd has fixes for the following security vulnerabilities.

    CVE-2020-1927
    CVE-2020-1934

    You can use YUM to update to this version of package from the AIX Toolbox repository.

    ------------------------------
    SANGAMESH
    ------------------------------


  • 2.  RE: httpd security vulnerability fix

    Posted Tue October 06, 2020 01:12 PM
    Hi,
    When is the 2.4.46 patch going to come out?  We currently have a vulnerability with versions less than 2.4.44

    Fixed version : 2.4.46
    Solution - Upgrade to Apache version 2.4.44 or later.
    First Discovered - 2020-08-20

    Please advise when this will come out so I can update my comments on my vulnerability
    Thanks,
    Kris



    ------------------------------
    Richard Lynch
    ------------------------------



  • 3.  RE: httpd security vulnerability fix

    Posted Wed October 07, 2020 07:40 AM
    We have already started working on this. Hopefully it will be available in AIX Toolbox in 2-3 weeks.

    ------------------------------
    SANGAMESH
    ------------------------------



  • 4.  RE: httpd security vulnerability fix

    Posted Fri October 30, 2020 03:31 PM
    Is there any update on this?  It has been over 3 weeks​

    ------------------------------
    Richard Lynch
    ------------------------------



  • 5.  RE: httpd security vulnerability fix

    Posted Mon November 02, 2020 01:23 AM
    httpd-2.4.46 is now available in Toolbox.
    https://public.dhe.ibm.com/aix/freeSoftware/aixtoolbox/RPMS/ppc/httpd/
    You can also use yum to update it.

    ------------------------------
    Ayappan P
    ------------------------------



Global message icon