Overview

Request 646061 accepted

- update to version 2.4.4:
* Fix buffer overflows in URL auth code (CVE-2018-18820,
bsc#1114434)
* Worked around buffer overflows in URL auth’s cURL interface
* Do not report hashed user passworts in user list
* Fixed segfault in htpasswd auth if no filename is set
* Fixed a segfault when xsltApplyStylesheet() returns error
* Do not segfault on malformed Opus streams
* Global listener count could be negative under certain
circumstances
* Added code to announce Opus streams as such towards yp servers

Loading...
Request History
Takashi Iwai's avatar

tiwai created request

- update to version 2.4.4:
* Fix buffer overflows in URL auth code (CVE-2018-18820,
bsc#1114434)
* Worked around buffer overflows in URL auth’s cURL interface
* Do not report hashed user passworts in user list
* Fixed segfault in htpasswd auth if no filename is set
* Fixed a segfault when xsltApplyStylesheet() returns error
* Do not segfault on malformed Opus streams
* Global listener count could be negative under certain
circumstances
* Added code to announce Opus streams as such towards yp servers


Martin Pluskal's avatar

pluskalm accepted request

thx

openSUSE Build Service is sponsored by