Download >>> https://byltly.com/25qvm7
This article will go over the release of Appserv 2.5.10 64 bit. This is a fork of Apache's open source web server offering with extra features, such as support for WebDAV, LDAP, SSLv3 and TLSv1. It provides high performance, enterprise class features that are not included in the official Apache releases. This release fixes some important bugs and adds additional security enhancements to address potential vulnerabilities with SSL/TLS protocols and ciphers that may have been recently identified through industry standard assessments or newly published research findings on cryptographic algorithms used in TLSv1.0-1.2 (SSLv3). This release is available for download at the Appserv Mirror.Appserv 2.5.10 has been updated to fix two important known vulnerabilities: CVE-2012-4860 and CVE-2012-4868. CVE-2012-4860 is a security issue in PHP's xmlrpc extension that allows remote attackers to bypass safe_mode restrictions by using bad arguments into the xmlrpc_call function call in order to trigger Java Virtual Machine (JVM) out of memory (OOM) crashes (CVE–2012–4860). CVE-2012-4868 is a security issue in PHP 5.3.10 and older that allows remote attackers to obtain potentially sensitive information from process memory by using unserialize to access "protected properties" (CVE–2012–4868).This release is available for download at the Appserv Mirror.Appserv 2.5.9 has been updated with several important enhancements and fixes: Added support for X-Forwarded-For IP address variable in REMOTE_ADDR environment variable which can be used with RequestHeader firewall feature to include it with all proxied requests so the backend server can determine whether or not it received a request from another server or directly from the client. Added support for returning error code from any script language as a result of a call to the native API function "appserv_return_error()". The Appserver will print it as a conventional response with an HTTP Status Code of 500 using the error information information returned by the function. Improved performance of scanning file system for changes by using asynchronous threads to scan files which results in much less CPU load and improved user experience since appserver will respond immediately after detecting changes instead of waiting for the user to finish browsing directories. Improved memory usage by making sure that file release buffers are always released regardless of whether the file was successfully closed or not. This prevents memory leaks when file buffers are not properly released which can cause Appserver to loose memory while running on low memory systems. Fixed vulnerabilities that expose files on the end users' computers to malicious attacks when they are processed by PHP's file_get_contents(). Fixed vulnerabilities that may allow remote attackers to cause a denial of service (memory exhaustion or crashes) or possibly execute arbitrary code. Appserv 2.5.9 has been updated to fix some important bugs and add new features: This release is available for download at the Appserv Mirror.From 10th September, Appserv will be using Apache 1. eccc085e13
Comments