+6.0.17 -- 2024-03-19
+
+Security #6867: eve: excessive ssh long banner logging (6.0.x backport)(CVE 2024-28870)
+Security #6800: ssh: quadratic complexity in overlong banner (6.0.x backport)(CVE 2024-28870)
+Security #6758: libhtp: quadratic complexity checking after request line mission protocol (6.0.x backport)(CVE 2024-28871)
+Bug #6783: util/mime: Memory leak at util-decode-mime.c:MimeDecInitParser (6.0.x backport)
+Bug #6767: multi-tenancy: dead lock during tenant loading (6.0.x backport)
+Bug #6530: drop: assertion failed !(PKT_IS_PSEUDOPKT(p)) && !PacketCheckAction(p, ACTION_DROP) (6.0.x backport)
+Task #6869: libhtp 0.5.47 (6.0.x backport)
+
6.0.16 -- 2024-02-08
Security #6751: http2: evasion by splitting header fields over frames (6.0.x backport)
- AC_INIT([suricata],[6.0.17-dev])
+ AC_INIT([suricata],[6.0.17])
m4_ifndef([AM_SILENT_RULES], [m4_define([AM_SILENT_RULES],[])])AM_SILENT_RULES([yes])
AC_CONFIG_HEADERS([src/autoconf.h])
AC_CONFIG_SRCDIR([src/suricata.c])
echo
exit 1
fi
- PKG_CHECK_MODULES(LIBHTPMINVERSION, [htp >= 0.5.46],[libhtp_minver_found="yes"],[libhtp_minver_found="no"])
+ PKG_CHECK_MODULES(LIBHTPMINVERSION, [htp >= 0.5.47],[libhtp_minver_found="yes"],[libhtp_minver_found="no"])
if test "$libhtp_minver_found" = "no"; then
PKG_CHECK_MODULES(LIBHTPDEVVERSION, [htp = 0.5.X],[libhtp_devver_found="yes"],[libhtp_devver_found="no"])
if test "$libhtp_devver_found" = "no"; then
echo
- echo " ERROR! libhtp was found but it is neither >= 0.5.46, nor the dev 0.5.X"
+ echo " ERROR! libhtp was found but it is neither >= 0.5.47, nor the dev 0.5.X"
echo
exit 1
fi
# Format:
#
# name {repo} {branch|tag}
-libhtp https://github.com/OISF/libhtp 0.5.x
-suricata-update https://github.com/OISF/suricata-update master-1.2.x
+libhtp https://github.com/OISF/libhtp 0.5.47
+suricata-update https://github.com/OISF/suricata-update 1.2.8