We are happy to announce that cPanel, L.L.C. has released an update for EasyApache 4! This release includes a version update for ea-apache24 to 2.4.39, resolution to an issue with the installation of ea-liblsapi, and a solution for the premature stoppage of /scripts/ea-tomcat85. Please review the release in its entirety, then join us on Slack, Discord, or Reddit to talk about this update and much more
ea-apache2EA-8307: Update Apache to 2.4.39, drop 2.4.38ea-apache2-configEA-8305: Revert change in EA-8250ea-liblsapiEA-8300: Cannot reinstall ea-liblsapi because of conflicts with liblsapiea-tomcat85EA-8241: /scripts/ea-tomcat85 prematurely dies if fs.protected_symlinks_create is enabled
This release includes a security patch that has been issued a fix for a CVE (Common Vulnerabilities and Exposures), the details of which are included below.
cPanel, L.L.C. has updated RPMs for EasyApache 4 with Apache version 2.4.39. This release addresses vulnerabilities related to CVE-2019-0197, CVE-2019-0196, CVE-2019-0211, CVE-2019-0217, CVE-2019-0215, and CVE-2019-0220. We strongly encourage all Apache users to upgrade to version 2.4.39.
All versions of Apache through 2.4.38