From: Eric Covener Date: Mon, 19 Jun 2017 17:04:48 +0000 (+0000) Subject: attribution X-Git-Tag: 2.2.33~3 X-Git-Url: http://git.ipfire.org/cgi-bin/gitweb.cgi?a=commitdiff_plain;h=990c8c2686824ee9f23c63d83d026a251ef2112d;p=thirdparty%2Fapache%2Fhttpd.git attribution git-svn-id: https://svn.apache.org/repos/asf/httpd/httpd/branches/2.2.x@1799236 13f79535-47bb-0310-9956-ffa450edef68 --- diff --git a/CHANGES b/CHANGES index 43795251174..d8a79740ced 100644 --- a/CHANGES +++ b/CHANGES @@ -7,6 +7,7 @@ Changes with Apache 2.2.33 the end of its input string. By maliciously crafting a sequence of request headers, an attacker may be able to cause a segmentation fault, or to force ap_find_token() to return an incorrect value. + [Jacob Champion] *) SECURITY: CVE-2017-3169 (cve.mitre.org) mod_ssl may dereference a NULL pointer when third-party modules call