[BACK]Return to CHANGES CVS log [TXT][DIR] Up to [cvs.NetBSD.org] / src / libexec / httpd

Please note that diffs are not public domain; they are subject to the copyright notices on the relevant files.

Diff for /src/libexec/httpd/CHANGES between version 1.33 and 1.34

version 1.33, 2018/12/18 23:11:40 version 1.34, 2018/12/19 12:40:32
Line 1 
Line 1 
 $NetBSD$  $NetBSD$
   
 changes in bozohttpd 20181215:  changes in bozohttpd 20181215:
         o  avoid .htpasswd exposure to authenticated users.  reported by JP,          o  fix .htpasswd bypass for authenticated users.  reported by JP,
            from leot@netbsd.org             from leot@netbsd.org
         o  avoid possible null dereference when receiving a big request that          o  avoid possible null dereference when receiving a big request that
            timeout.  reported by maya@netbsd.org, from leot@netbsd.org             timeout.  reported by maya@netbsd.org, from leot@netbsd.org

Legend:
Removed from v.1.33  
changed lines
  Added in v.1.34

CVSweb <webmaster@jp.NetBSD.org>