From: Mark J. Cox Date: Tue, 30 Oct 2012 15:16:16 +0000 (+0000) Subject: Retrospectively assign CVE-2012-4557 as this issue had a similar X-Git-Tag: 2.2.24~101 X-Git-Url: http://git.ipfire.org/cgi-bin/gitweb.cgi?a=commitdiff_plain;h=c30cf0d362aaea70994c1ba212623e20ebdf2e01;p=thirdparty%2Fapache%2Fhttpd.git Retrospectively assign CVE-2012-4557 as this issue had a similar affect to CVE-2011-3348 git-svn-id: https://svn.apache.org/repos/asf/httpd/httpd/branches/2.2.x@1403734 13f79535-47bb-0310-9956-ffa450edef68 --- diff --git a/CHANGES b/CHANGES index 2f28149abf4..c447c43502c 100644 --- a/CHANGES +++ b/CHANGES @@ -120,7 +120,8 @@ Changes with Apache 2.2.22 when no custom ErrorDocument is specified for status code 400. [Eric Covener] - *) mod_proxy_ajp: Try to prevent a single long request from marking a worker + *) SECURITY: CVE-2012-4557 (cve.mitre.org) + mod_proxy_ajp: Try to prevent a single long request from marking a worker in error. [Jean-Frederic Clere] *) config: Update the default mod_ssl configuration: Disable SSLv2, only