]> git.ipfire.org Git - thirdparty/apache/httpd.git/commit
Merge r682868 from trunk:
authorRuediger Pluem <rpluem@apache.org>
Tue, 5 Aug 2008 19:01:50 +0000 (19:01 +0000)
committerRuediger Pluem <rpluem@apache.org>
Tue, 5 Aug 2008 19:01:50 +0000 (19:01 +0000)
commit447309689a7970bf8a7e00eb9d44a115acb8f6a3
treee84fcf5be95c7da2013f56a98ff5edbbbfb2a808
parent5aefa9f50fb5d7ceb7c2daabbdd2d5a7b7d056aa
Merge r682868 from trunk:

* Prevent XSS attacks when using wildcards in the path of the FTP URL.
  Discovered by Marc Bevand of Rapid7.

CVE: CVE-2008-2939
Submitted by: rpluem
Reviewed by: rpluem, mjc, jim, jorton

git-svn-id: https://svn.apache.org/repos/asf/httpd/httpd/branches/2.2.x@682870 13f79535-47bb-0310-9956-ffa450edef68
CHANGES
modules/proxy/mod_proxy_ftp.c