Bug 603360 - Apache error page footer displays @VENDOR@ instead of the actual Linux vendor.
Apache error page footer displays @VENDOR@ instead of the actual Linux vendor.
Status: CLOSED DUPLICATE of bug 572140
Product: Red Hat Enterprise Linux 6
Classification: Red Hat
Component: httpd (Show other bugs)
6.0
x86_64 Linux
low Severity medium
: rc
: ---
Assigned To: Joe Orton
BaseOS QE Security Team
:
Depends On:
Blocks:
  Show dependency treegraph
 
Reported: 2010-06-12 11:39 EDT by supaphat21
Modified: 2010-06-13 09:15 EDT (History)
0 users

See Also:
Fixed In Version:
Doc Type: Bug Fix
Doc Text:
Story Points: ---
Clone Of:
Environment:
Last Closed: 2010-06-13 08:26:44 EDT
Type: ---
Regression: ---
Mount Type: ---
Documentation: ---
CRM:
Verified Versions:
Category: ---
oVirt Team: ---
RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: ---


Attachments (Terms of Use)
Patch to correctly replace the @RELEASE@ and @VENDOR@ strings in httpd-2.2.14-release.patch (527 bytes, patch)
2010-06-12 21:11 EDT, supaphat21
no flags Details | Diff

  None (edit)
Description supaphat21 2010-06-12 11:39:20 EDT
Description of problem:
Apache error page footer displays @VENDOR@ instead of the actual Linux vendor.

Version-Release number of selected component (if applicable):
Red Hat 6.0 Beta
httpd-2.2.14-5.el6

How reproducible:
every time


Steps to Reproduce:
1. yum install httpd
2. /etc/init.d/httpd start
3. open a browser and go to a nonexistent URL http://localhost/wtfbbq/
  
Actual results:
Not Found

The requested URL /wtfbbq/ was not found on this server.

Apache/2.2.14 (@VENDOR@) Server at 127.0.0.1 Port 80

Expected results:
Not Found

The requested URL /wtf/ was not found on this server.

Apache/2.2.14 (Red Hat Linux) Server at 127.0.0.1 Port 80


Additional info:
Comment 2 RHEL Product and Program Management 2010-06-12 11:52:53 EDT
This request was evaluated by Red Hat Product Management for inclusion in a Red
Hat Enterprise Linux major release.  Product Management has requested further
review of this request by Red Hat Engineering, for potential inclusion in a Red
Hat Enterprise Linux Major release.  This request is not yet committed for
inclusion.
Comment 3 supaphat21 2010-06-12 21:11:22 EDT
Created attachment 423567 [details]
Patch to correctly replace the @RELEASE@ and @VENDOR@ strings in httpd-2.2.14-release.patch

It appears as though the httpd.spec in the source rpm does not properly replace the @VENDOR@ and @RELEASE@ strings in the httpd-2.2.14-release.patch prior to patching. I have verified that the correct information is now in the httpd binary through the use of strings. I will post again after I am able to test the Server Tokens display (sorry slow machine).
Comment 4 supaphat21 2010-06-12 21:19:56 EDT
A brief test using different ServerTokens settings now shows the appropriate Vendor as:

Not Found

The requested URL /wtf/ was not found on this server.

Apache/2.2.14 (Red Hat) Server at 127.0.0.1 Port 80
Comment 5 Joe Orton 2010-06-13 08:26:44 EDT
Thanks for the report.  This has been resolved; an updated set of httpd packages is available here for testing:

  http://people.redhat.com/jorton/Santiago/

*** This bug has been marked as a duplicate of bug 572140 ***
Comment 6 supaphat21 2010-06-13 09:15:25 EDT
Would it be possible to have the SRPMs available at that link? It would be nice to see the fix in progress since https://bugzilla.redhat.com/show_bug.cgi?id=572140 seems to be internal.

Note You need to log in before you can comment on or make changes to this bug.