Index index by Group index by Distribution index by Vendor index by creation date index by Name Mirrors Help Search

mod_proxy_html-2.4.62-13.el9_8.5 RPM for ppc64le

From AlmaLinux 9.8 AppStream for ppc64le

Name: mod_proxy_html Distribution: AlmaLinux
Version: 2.4.62 Vendor: AlmaLinux
Release: 13.el9_8.5 Build date: Mon Jul 20 10:01:23 2026
Group: Unspecified Build host: ppc64le-builder02.almalinux.org
Size: 137422 Source RPM: httpd-2.4.62-13.el9_8.5.src.rpm
Packager: AlmaLinux Packaging Team <packager@almalinux.org>
Url: https://httpd.apache.org/
Summary: HTML and XML content filters for the Apache HTTP Server
The mod_proxy_html and mod_xml2enc modules provide filters which can
transform and modify HTML and XML content.

Provides

Requires

License

ASL 2.0

Changelog

* Thu Jul 09 2026 Luboš Uhliarik <luhliari@redhat.com> - 2.4.62-13.5
  - Resolves: RHEL-192752 - mod_proxy_html regression in CVE-2026-34355 fix
* Tue Jun 30 2026 Luboš Uhliarik <luhliari@redhat.com> - 2.4.62-13.4
  - Resolves: RHEL-186217 - httpd: Apache HTTP Server: Heap-based Buffer Overflow
    via malicious backend servers (CVE-2026-34356)
  - Resolves: RHEL-182578 - httpd: incomplete fix
    for CVE-2023-38709 (CVE-2024-42516)
  - Also addresses CVE-2026-24072, CVE-2026-33006, CVE-2026-42535, CVE-2026-43951,
    CVE-2026-44119, CVE-2026-44186
* Fri Jun 26 2026 RHEL Packaging Agent <redhat-ymir-agent@redhat.com> - 2.4.62-13.3
  - Resolves: RHEL-186186 - httpd: mod_proxy_html buffer handling
    vulnerability (CVE-2026-34355)
  - Resolves: RHEL-175636 - httpd: mod_dav_lock uses wrong lock discovery
    (CVE-2026-29169)
  - Resolves: RHEL-186196 - mod_xml2enc: fix bblen accounting in fix_skipto
    (CVE-2026-42536)
  - Resolves: RHEL-186164 - httpd: fix OCSP write buffer advancement
    bug in mod_ssl (CVE-2026-44185)
* Wed Jun 24 2026 RHEL Packaging Agent <redhat-ymir-agent@redhat.com> - 2.4.62-13.2
  - Resolves: RHEL-184312 - httpd: ap_regname restrict to reasonable captures
    (CVE-2026-44631)
* Mon May 11 2026 Luboš Uhliarik <luhliari@redhat.com> - 2.4.62-13.1
  - Resolves: RHEL-173555 - httpd: Apache HTTP Server mod_proxy_ajp: Arbitrary
    code execution via heap-based buffer overflow (CVE-2026-28780)
  - Resolves: RHEL-175080 - httpd: NULL pointer dereference can cause a child
    process crash (CVE-2026-33007)
  - Resolves: RHEL-175100 - httpd: off-by-one out-of-bounds reads in AJP getter
    functions (CVE-2026-33857)
  - Resolves: RHEL-175028 - httpd: heap-based buffer over-read due to missing
    null-termination check (CVE-2026-34032)
  - Resolves: RHEL-175062 - httpd: heap-based buffer over-read and memory
    disclosure in ajp_parse_data() (CVE-2026-34059)
* Thu Feb 12 2026 Luboš Uhliarik <luhliari@redhat.com> - 2.4.62-13
  - Resolves: RHEL-129692 - [RFE] Need miliseconds time stamp in ErrorLogFormat
* Thu Jan 08 2026 Luboš Uhliarik <luhliari@redhat.com> - 2.4.62-12
  - Resolves: RHEL-135064 - httpd: Apache HTTP Server: mod_userdir+suexec bypass
    via AllowOverride FileInfo (CVE-2025-66200)
  - Resolves: RHEL-135049 - httpd: Apache HTTP Server: CGI environment variable
    override (CVE-2025-65082)
  - Resolves: RHEL-134481 - httpd: Apache HTTP Server: Server Side Includes adds
    query string to #exec cmd=... (CVE-2025-58098)
* Fri Dec 19 2025 Luboš Uhliarik <luhliari@redhat.com> - 2.4.62-11
  - Resolves: RHEL-131827 - Fix error page messaging when error handling fails
* Thu Nov 06 2025 Luboš Uhliarik <luhliari@redhat.com> - 2.4.62-10
  - Resolves: RHEL-119000 - mod_ssl: allow more fine grained SSL SNI vhost check
    to avoid unnecessary 421 errors after CVE-2025-23048 fix
  - mod_ssl: add conf.d/snipolicy.conf to set 'SSLVHostSNIPolicy authonly' default
* Fri Oct 24 2025 Luboš Uhliarik <luhliari@redhat.com> - 2.4.62-9
  - Resolves: RHEL-105446 - mod_proxy_hcheck may stop healthchecks after a child
    process is reclaimed
* Mon Oct 13 2025 Luboš Uhliarik <luhliari@redhat.com> - 2.4.62-8
  - Resolves: RHEL-114501 Image mode: The dir /var/www is not created when
    updating system in image mode
* Sat Aug 16 2025 Luboš Uhliarik <luhliari@redhat.com> - 2.4.62-7
  - Resolves: RHEL-99815 - stickysession field does not work when specifying
    it in the query parameter after upgrade to 9.5
  - Resolves: RHEL-99953 - httpd: HTTP Session Hijack via a TLS
    upgrade (CVE-2025-49812)
  - Resolves: RHEL-99968 - httpd: access control bypass by trusted
    clients is possible using TLS 1.3 session resumption (CVE-2025-23048)
  - Resolves: RHEL-99977 - httpd: insufficient escaping of user-supplied
    data in mod_ssl (CVE-2024-47252)
* Tue Jul 29 2025 Luboš Uhliarik <luhliari@redhat.com> - 2.4.62-6
  - Resolves: RHEL-94562 - httpd 2.4.62: mod_proxy_connect prematurely closes
    connections
* Fri Jun 06 2025 Joe Orton  <jorton@redhat.com> - 2.4.62-5
  - mod_dav: add dav_get_base_path() API
  - Resolves: RHEL-41069
* Wed Jan 29 2025 Luboš Uhliarik <luhliari@redhat.com> - 2.4.62-4
  - Resolves: RHEL-66488 - Apache HTTPD no longer parse PHP files with unicode
    characters in the name
* Thu Jan 09 2025 Luboš Uhliarik <luhliari@redhat.com> - 2.4.62-3
  - Resolves: RHEL-68660 - RewriteRule proxying to UDS (unix domain socket)
    configured in .htaccess doesn't work on httpd-2.4.62-1
* Thu Sep 12 2024 Joe Orton <jorton@redhat.com> - 2.4.62-2
  - mod_ssl: fix loading keys via ENGINE API
    Resolves: RHEL-36755
* Sat Aug 03 2024 Luboš Uhliarik <luhliari@redhat.com> - 2.4.62-1
  - new version 2.4.62
  - Resolves: RHEL-52724 - Regression introduced by CVE-2024-38474 fix
* Fri Jul 19 2024 Luboš Uhliarik <luhliari@redhat.com> - 2.4.59-7
  - Resolves: RHEL-49856: htcacheclean.service missing [Install] section

Files

/etc/httpd/conf.modules.d/00-proxyhtml.conf
/usr/lib/.build-id
/usr/lib/.build-id/58/759a2b21c3c0ba2746f35a7cc8c6fcdc1ede02
/usr/lib/.build-id/d5/bdca8262661d0c7c630a0cef0489746013a06e
/usr/lib64/httpd/modules/mod_proxy_html.so
/usr/lib64/httpd/modules/mod_xml2enc.so


Generated by rpm2html 1.8.1

Fabrice Bellet, Tue Jul 21 06:27:13 2026