From: Ivan Zhakov Date: Fri, 5 Jul 2024 09:11:38 +0000 (+0000) Subject: On '2.4.x' branch: X-Git-Tag: 2.4.62-rc1-candidate~29 X-Git-Url: http://git.ipfire.org/cgi-bin/gitweb.cgi?a=commitdiff_plain;h=ecc67450d2da42d8724a5f5e8ef4cb92d4336ff2;p=thirdparty%2Fapache%2Fhttpd.git On '2.4.x' branch: * CHANGES: Fix typo. git-svn-id: https://svn.apache.org/repos/asf/httpd/httpd/branches/2.4.x@1918929 13f79535-47bb-0310-9956-ffa450edef68 --- diff --git a/CHANGES b/CHANGES index cc72b91ad7f..5f1abd26607 100644 --- a/CHANGES +++ b/CHANGES @@ -80,7 +80,7 @@ Changes with Apache 2.4.60 crafted requests. Credits: Orange Tsai (@orange_8361) from DEVCORE - *) SECURITY: CVE-2024-38472: Apache HTTP Server on WIndows UNC SSRF + *) SECURITY: CVE-2024-38472: Apache HTTP Server on Windows UNC SSRF (cve.mitre.org) SSRF in Apache HTTP Server on Windows allows to potentially leak NTML hashes to a malicious server via SSRF and malicious