Bug#1080375: apr: CVE-2023-49582

2024-09-02 Thread Salvatore Bonaccorso
Source: apr Version: 1.7.2-3 Severity: important Tags: security upstream X-Debbugs-Cc: car...@debian.org, Debian Security Team Hi, The following vulnerability was published for apr. CVE-2023-49582[0]: | Lax permissions set by the Apache Portable Runtime library on Unix | platforms would allow l

Bug#972695: Reload or restart?

2024-09-02 Thread Joachim Zobel
Just wanted to point out that the documentation of SSLSessionTickets says "restarting" while the logrotate configuration reloads. What is actually needed? Sincerely, Joachim

Bug#972695: SSLSessionTickets off by default

2024-09-02 Thread Joachim Zobel
It looks like SSLSessionTickets is now disabled by default. So I think the ticke can be closed. Sinerely, Joachim