Skip to content
  1. Nov 25, 2014
    • Joe Orton's avatar
      Merge r1640036, r1640331 from trunk: · 55ad7eb6
      Joe Orton authored
      mod_proxy_fcgi: SECURITY: CVE-2014-3583 (cve.mitre.org)
      Fix a potential crash with response headers' size above 8K.
      
      The code changes to mod_authnz_fcgi keep the handle_headers()
      function in sync between the two modules.  mod_authnz_fcgi
      does not have this issue because it allocated a separate byte
      for terminating '\0'.
      
      Submitted by: ylavic, trawick
      Reviewed by: ylavic, trawick, mrumph
      
      
      git-svn-id: https://svn.apache.org/repos/asf/httpd/httpd/branches/2.4.x@1641551 13f79535-47bb-0310-9956-ffa450edef68
      55ad7eb6
  2. Nov 24, 2014
  3. Nov 22, 2014
  4. Nov 20, 2014
  5. Nov 19, 2014
  6. Nov 18, 2014
  7. Nov 16, 2014
  8. Nov 15, 2014
  9. Nov 14, 2014
  10. Nov 13, 2014
  11. Nov 12, 2014
  12. Nov 11, 2014
  13. Nov 10, 2014
  14. Nov 09, 2014
  15. Nov 06, 2014