CVS log for ports/www/apache22/files/Attic/patch-secfix-CAN-2005-3352
Up to [FreeBSD] / ports / www / apache22 / files
Request diff between arbitrary revisions
Keyword substitution: kv
Default branch: MAIN
Revision 1.3
Mon May 1 09:07:28 2006 UTC (5 years, 9 months ago) by clement
Branches: MAIN
CVS tags: HEAD
FILE REMOVED
Changes since revision 1.2: +0 -0 lines
- Update to 2.2.2 - Enable mod_version by default
Revision 1.2: download - view: text, markup, annotated - select for diffs
Tue Dec 13 10:51:41 2005 UTC (6 years, 2 months ago) by clement
Branches: MAIN
CVS tags: RELEASE_6_1_0, RELEASE_5_5_0
Diff to: previous 1.1: preferred, colored
Changes since revision 1.1: +1 -1 lines
- Fix typo (it's actually in apache SVN repo) Reported by: Matt Smith <matt@xtaz.co.uk>
Revision 1.1: download - view: text, markup, annotated - select for diffs
Mon Dec 12 20:55:14 2005 UTC (6 years, 2 months ago) by clement
Branches: MAIN
SECURITY: CVE-2005-3352 (cve.mitre.org)
mod_imap: Escape untrusted referer header before outputting in HTML
to avoid potential cross-site scripting. Change also made to
ap_escape_html so we escape quotes. Reported by JPCERT.
[Mark Cox]
Reported by: simon
