current ChangeLog,1.202,1.203
Fabian Keil <[email protected]>
| Newsgroups | gmane.comp.web.privoxy.cvs |
|---|---|
| Message-ID | <[email protected]> |
Update of /cvsroot/ijbswa/current
In directory sfp-cvs-1.v30.ch3.sourceforge.com:/tmp/cvs-serv10105
Modified Files:
ChangeLog
Log Message:
Add CVEs for Privoxy 3.0.24
Index: ChangeLog
===================================================================
RCS file: /cvsroot/ijbswa/current/ChangeLog,v
retrieving revision 1.202
retrieving revision 1.203
diff -C2 -d -r1.202 -r1.203
*** ChangeLog 21 Jan 2016 15:57:15 -0000 1.202
--- ChangeLog 22 Jan 2016 10:20:47 -0000 1.203
***************
*** 6,12 ****
- Security fixes (denial of service):
- Prevent invalid reads in case of corrupt chunk-encoded content.
! Bug discovered with afl-fuzz and AddressSanitizer.
- Remove empty Host headers in client requests.
! Previously they would result in invalid reads.
Bug discovered with afl-fuzz and AddressSanitizer.
--- 6,12 ----
- Security fixes (denial of service):
- Prevent invalid reads in case of corrupt chunk-encoded content.
! CVE-2016-1982. Bug discovered with afl-fuzz and AddressSanitizer.
- Remove empty Host headers in client requests.
! Previously they would result in invalid reads. CVE-2016-1983.
Bug discovered with afl-fuzz and AddressSanitizer.
------------------------------------------------------------------------------
Site24x7 APM Insight: Get Deep Visibility into Application Performance
APM + Mobile APM + RUM: Monitor 3 App instances at just $35/Month
Monitor end-to-end web transactions and take corrective actions now
Troubleshoot faster and improve end-user experience. Signup Now!
http://pubads.g.doubleclick.net/gampad/clk?id=267308311&iu=/4140