[PATCH] Fix StartTLS stripping vulnerability
authorYusuke Endoh <mame@ruby-lang.org>
Wed, 7 Jul 2021 03:06:44 +0000 (12:06 +0900)
committerUtkarsh Gupta <utkarsh@debian.org>
Sun, 19 Sep 2021 03:40:46 +0000 (04:40 +0100)
commit938cd7948241be1b0046804404af9997adf41b02
tree2027440ca3689e2351e24133c83e48c1ba3a7fe3
parent37f3efa29d56142a117a9197d5af9838967958fb
[PATCH] Fix StartTLS stripping vulnerability

Reported by Alexandr Savca in https://hackerone.com/reports/1178562

Co-authored-by: Shugo Maeda <shugo@ruby-lang.org>
Gbp-Pq: Name CVE-2021-32066.patch
lib/net/imap.rb
test/net/imap/test_imap.rb