[scl.org] CVE-2019-0211 CentOS SCL httpd24 not patched

Vesselin Markov VMarkov at taxback.com
Wed Apr 17 11:04:21 UTC 2019


Hi folks,

On April 11th 2019 RedHat has responded to 

httpd: privilege escalation from modules scripts (CVE-2019-0211)
mod_auth_mellon: authentication bypass in ECP flow (CVE-2019-3878)

building a patched Apache http24 version for Software Collections -

https://access.redhat.com/errata/RHSA-2019:0746

When can we expect this will be done for the SCL CentOS 7 too please?

Thanks,

Vesselin




More information about the SCLorg mailing list