[PATCH] Fix StartTLS stripping vulnerability
authorYusuke Endoh <mame@ruby-lang.org>
Wed, 7 Jul 2021 03:06:44 +0000 (12:06 +0900)
committerUtkarsh Gupta <utkarsh@debian.org>
Sun, 5 Dec 2021 23:55:44 +0000 (23:55 +0000)
commitbcbf2f7cf6eb63894bb09bd4b2fb3833e2f45b69
tree660c44f8af4dd1a66993ad56880b76a90b9b8c9f
parentd80e622ca5b736f8ba3a15d27ee8fe65cdbb23b2
[PATCH] Fix StartTLS stripping vulnerability

Reported by Alexandr Savca in https://hackerone.com/reports/1178562

Co-authored-by: Shugo Maeda <shugo@ruby-lang.org>
Gbp-Pq: Name CVE-2021-32066.patch
lib/net/imap.rb
test/net/imap/test_imap.rb