Bug 57752 - apache2: Multiple issues (5.0)
Summary: apache2: Multiple issues (5.0)
Status: CLOSED FIXED
Alias: None
Product: UCS
Classification: Unclassified
Component: Security updates
Version: UCS 5.0
Hardware: All Linux
: P3 normal
Target Milestone: UCS 5.0-9-errata
Assignee: Quality Assurance
QA Contact: Christian Castens
URL:
Keywords:
Depends on:
Blocks:
 
Reported: 2024-11-18 12:33 CET by Quality Assurance
Modified: 2024-11-20 13:42 CET (History)
0 users

See Also:
What kind of report is it?: Security Issue
What type of bug is this?: ---
Who will be affected by this bug?: ---
How will those affected feel about the bug?: ---
User Pain:
Enterprise Customer affected?:
School Customer affected?:
ISV affected?:
Waiting Support:
Flags outvoted (downgraded) after PO Review:
Ticket number:
Bug group (optional):
Customer ID:
Max CVSS v3 score: 5.3 (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N)


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Quality Assurance univentionstaff 2024-11-18 12:33:42 CET
New Debian apache2 2.4.59-1~deb10u4A~5.0.9.202411181233 fixes:
This update addresses the following issue:
2.4.59-1~deb10u4 (Sat, 19 Oct 2024 12:44:34 +0000)
* Team upload by ELTS team
* Fix CVE-2024-38473: Encoding problem in mod_proxy allowed request URLs with  incorrect encoding to be sent to backend services, potentially bypassing  authentication via crafted requests
* Fix a regression for CVE-2024-38473: Log error: AH01059: error parsing URL  //: Invalid host/port that broke sympa and configuration line SetHandler  "proxy:unix:/run/sympa/wwsympa.socket|fcgi://"
* Fix a regression for CVE-2024-38473: After the update "アダプタ/index.php" is  encoded to "%E3%82%A2%E3%83%80%E3%83%97%E3%82%BF/index.php" in the  filesystem.
Comment 1 Quality Assurance univentionstaff 2024-11-18 13:00:10 CET
--- mirror/ftp/pool/main/a/apache2/apache2_2.4.59-1~deb10u3A~5.0.9.202409251402.dsc
+++ apt/ucs_5.0-0-errata5.0-9/source/apache2_2.4.59-1~deb10u4A~5.0.9.202411181233.dsc
@@ -1,7 +1,24 @@
-2.4.59-1~deb10u3A~5.0.9.202409251402 [Wed, 25 Sep 2024 14:03:40 -0000] Univention builddaemon <buildd@univention.de>:
+2.4.59-1~deb10u4A~5.0.9.202411181233 [Mon, 18 Nov 2024 12:33:51 -0000] Univention builddaemon <buildd@univention.de>:
 
   * UCS auto build. The following patches have been applied to the original source package
     20-no-proxy.patch
+
+2.4.59-1~deb10u4 [Sat, 19 Oct 2024 12:44:34 +0000] Bastien Roucariès <rouca@debian.org>:
+
+  * Team upload by ELTS team
+  * Fix CVE-2024-38473:
+    Encoding problem in mod_proxy  allowed request URLs with
+    incorrect encoding to be sent to backend services,
+    potentially bypassing authentication via crafted requests
+  * Fix a regression for CVE-2024-38473 (Closes: #1076554):
+    Log error: AH01059: error parsing URL //: Invalid host/port
+    that broke sympa and configuration line
+    SetHandler "proxy:unix:/run/sympa/wwsympa.socket|fcgi://"
+  * Fix a regression for CVE-2024-38473 (Closes: #1079171):
+    After the update "アダプタ/index.php"
+    is encoded to
+    "%E3%82%A2%E3%83%80%E3%83%97%E3%82%BF/index.php"
+    in the filesystem.
 
 2.4.59-1~deb10u3 [Mon, 16 Sep 2024 20:34:52 +0000] Bastien Roucariès <rouca@debian.org>:
 

<http://piuparts.knut.univention.de/5.0-9/#3021770430856611411>
Comment 2 Christian Castens univentionstaff 2024-11-19 12:57:37 CET
OK: bug
OK: yaml
OK: announce_errata
OK: patch
OK: piuparts

[5.0-9] c1e0633572 Bug #57752: apache2 2.4.59-1~deb10u4A~5.0.9.202411181233
 doc/errata/staging/apache2.yaml | 13 +++++++++++++
 1 file changed, 13 insertions(+)
Comment 3 Christian Castens univentionstaff 2024-11-20 13:42:21 CET
<https://errata.software-univention.de/#/?erratum=5.0x1175>