1. 14 Jul, 2012 1 commit
  2. 13 Jul, 2012 11 commits
  3. 12 Jul, 2012 6 commits
  4. 11 Jul, 2012 1 commit
  5. 10 Jul, 2012 7 commits
  6. 09 Jul, 2012 3 commits
  7. 08 Jul, 2012 3 commits
  8. 07 Jul, 2012 2 commits
  9. 06 Jul, 2012 3 commits
  10. 04 Jul, 2012 2 commits
  11. 03 Jul, 2012 1 commit
    • Stefan Fritsch's avatar
      Merge r1349905: · 096fbe4a
      Stefan Fritsch authored
          SECURITY: CVE-2012-2687 (cve.mitre.org):
      
          mod_negotiation: Escape filenames in variant list to prevent an
          possible XSS for a site where untrusted users can upload files to a
          location with MultiViews enabled.
      
          * modules/mappers/mod_negotiation.c (make_variant_list): Escape
            filenames in variant list.
      
          Submitted by: Niels Heinen <heinenn google.com>
      
      Reviewed by: covener, jorton, sf
      
      
      git-svn-id: https://svn.apache.org/repos/asf/httpd/httpd/branches/2.4.x@1356889 13f79535-47bb-0310-9956-ffa450edef68
      096fbe4a