A security issue in Apache HTTPD has been announced today (July 5): http://openwall.com/lists/oss-security/2016/07/05/5 This sounds like a serious issue for organizations that are using client certificates to access (usually internal) websites. The issue has been fixed upstream in 2.4.23, and r1750779 in their SVN. Mageia 5 is not affected.
I pushed 2.4.23 to cauldron along with fixes for systemd 230 detection
Status: NEW => RESOLVEDCC: (none) => tmbResolution: (none) => FIXEDAssignee: bugsquad => tmb
URL: (none) => http://lwn.net/Vulnerabilities/694240/