From: Joe Orton Date: Wed, 26 Jun 2013 20:29:04 +0000 (+0000) Subject: And again... those who did the real work backporting this headache X-Git-Tag: 2.0.65~10 X-Git-Url: http://git.ipfire.org/cgi-bin/gitweb.cgi?a=commitdiff_plain;h=6a666815ae562dbc932149e039c8e98a0485f5e6;p=thirdparty%2Fapache%2Fhttpd.git And again... those who did the real work backporting this headache should take most of the blame^Wcredit. git-svn-id: https://svn.apache.org/repos/asf/httpd/httpd/branches/2.0.x@1497080 13f79535-47bb-0310-9956-ffa450edef68 --- diff --git a/CHANGES b/CHANGES index 83a85e6e207..360d115efc2 100644 --- a/CHANGES +++ b/CHANGES @@ -4,7 +4,7 @@ Changes with Apache 2.0.65 *) SECURITY: CVE-2013-1862 (cve.mitre.org) mod_rewrite: Ensure that client data written to the RewriteLog is escaped to prevent terminal escape sequences from entering the - log file. [Joe Orton] + log file. [Eric Covener, Jeff Trawick, Joe Orton] *) SECURITY: CVE-2012-0053 (cve.mitre.org) Fix an issue in error responses that could expose "httpOnly" cookies