summary |
shortlog | log |
commit |
commitdiff |
tree
first ⋅ prev ⋅ next
Jean Baptiste Favre [Sat, 21 May 2022 17:28:31 +0000 (18:28 +0100)]
trafficserver (8.1.1+ds-1.1+deb11u1) bullseye-security; urgency=high
* Multiple CVE fixes for 8.1.x
+ CVE-2021-37147: Improper input validation vulnerability
+ CVE-2021-37148: Improper input validation vulnerability
+ CVE-2021-37149: Improper Input Validation vulnerability
+ CVE-2021-38161: Improper Authentication vulnerability in TLS origin verification
+ CVE-2021-44040: Improper Input Validation vulnerability in request line parsing
+ CVE-2021-44759: Improper Authentication vulnerability in TLS origin validation
[dgit import unpatched trafficserver 8.1.1+ds-1.1+deb11u1]
Jean Baptiste Favre [Sat, 21 May 2022 17:28:31 +0000 (18:28 +0100)]
Import trafficserver_8.1.1+ds-1.1+deb11u1.debian.tar.xz
[dgit import tarball trafficserver 8.1.1+ds-1.1+deb11u1 trafficserver_8.1.1+ds-1.1+deb11u1.debian.tar.xz]
Jean Baptiste Favre [Sun, 6 Dec 2020 14:43:35 +0000 (14:43 +0000)]
Import trafficserver_8.1.1+ds.orig.tar.xz
[dgit import orig trafficserver_8.1.1+ds.orig.tar.xz]