CVS log for ports/www/apache20/files/Attic/patch-secfix-CAN-2005-1268
Up to [FreeBSD] / ports / www / apache20 / files
Request diff between arbitrary revisions
Keyword substitution: kv
Default branch: MAIN
Revision 1.2
Fri Oct 14 13:54:09 2005 UTC (6 years, 3 months ago) by clement
Branches: MAIN
CVS tags: HEAD
FILE REMOVED
Changes since revision 1.1: +0 -0 lines
- Update to 2.0.55
Revision 1.1: download - view: text, markup, annotated - select for diffs
Tue Jul 26 10:10:35 2005 UTC (6 years, 6 months ago) by clement
Branches: MAIN
CVS tags: RELEASE_6_0_0
- Add fix for CAN-2005-2088
From Changelog:
*) SECURITY: CAN-2005-2088
core: If a request contains both Transfer-Encoding and Content-Length
headers, remove the Content-Length, mitigating some HTTP Request
Splitting/Spoofing attacks. [Paul Querna, Joe Orton]
- Rename previous patch to CVE ID
- bump PORTREVISION
Security: CAN-2005-2088
Obtained From: Apache repository
