diff options
author | Kent Fredric <kentnl@gentoo.org> | 2020-05-13 06:01:03 +1200 |
---|---|---|
committer | Kent Fredric <kentnl@gentoo.org> | 2020-05-13 06:02:42 +1200 |
commit | 562e0ddc683696a4d4e423ed6b2b3a4f9d5d4eab (patch) | |
tree | 7d11cf40032ff17b046292c1af7bc68abc6fbf26 /www-apache/mod_perl/files | |
parent | dev-perl/Switch: arm64 keyworded (bug #685400) (diff) | |
download | gentoo-562e0ddc683696a4d4e423ed6b2b3a4f9d5d4eab.tar.gz gentoo-562e0ddc683696a4d4e423ed6b2b3a4f9d5d4eab.tar.bz2 gentoo-562e0ddc683696a4d4e423ed6b2b3a4f9d5d4eab.zip |
www-apache/mod_perl: Sec cleanup 2.0.11 re bug #672086
Removing versions affected by CVE-2011-2767
Bug: https://bugs.gentoo.org/672086
Bug: https://rt.cpan.org/Public/Bug/Display.html?id=126984
Bug: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=644169
Bug: https://bugzilla.redhat.com/show_bug.cgi?id=1623265
Bug: https://nvd.nist.gov/vuln/detail/CVE-2011-2767
Bug: https://www.cvedetails.com/cve/CVE-2011-2767/
Package-Manager: Portage-2.3.99, Repoman-2.3.22
Signed-off-by: Kent Fredric <kentnl@gentoo.org>
Diffstat (limited to 'www-apache/mod_perl/files')
-rw-r--r-- | www-apache/mod_perl/files/mod_perl-2.0.10-apache24-tests-1.patch | 33 | ||||
-rw-r--r-- | www-apache/mod_perl/files/mod_perl-2.0.10-apache24-tests-2.patch | 23 |
2 files changed, 0 insertions, 56 deletions
diff --git a/www-apache/mod_perl/files/mod_perl-2.0.10-apache24-tests-1.patch b/www-apache/mod_perl/files/mod_perl-2.0.10-apache24-tests-1.patch deleted file mode 100644 index 822fb4e87550..000000000000 --- a/www-apache/mod_perl/files/mod_perl-2.0.10-apache24-tests-1.patch +++ /dev/null @@ -1,33 +0,0 @@ -From f4dd0394f0975892b51a889f023d0e207553a656 Mon Sep 17 00:00:00 2001 -From: Niko Tyni <ntyni@debian.org> -Date: Fri, 23 Dec 2016 18:27:23 +0200 -Subject: [PATCH 1/2] Fix t/apache/read.t HTTP syntax for Apache 2.4.25 - compatibility - -HTTP/1.1 RFC 7230, section 2.6. "Protocol Versioning" says the HTTP name -is case sensitive. Starting with Apache 2.4.25, using lower case will -make the server issue a 400 Bad request response, causing a test failure. - -https://tools.ietf.org/html/rfc7230#section-2.6 - -Bug-Debian: https://bugs.debian.org/849082 ---- - t/apache/read.t | 2 +- - 1 file changed, 1 insertion(+), 1 deletion(-) - -diff --git a/t/apache/read.t b/t/apache/read.t -index 83670c9..9f7f504 100644 ---- a/t/apache/read.t -+++ b/t/apache/read.t -@@ -24,7 +24,7 @@ close $fh; - - my $size = length $data; - --for my $string ("POST $location http/1.0", -+for my $string ("POST $location HTTP/1.0", - "Content-length: $size", - "") { - my $line = "$string\r\n"; --- -2.11.0 - diff --git a/www-apache/mod_perl/files/mod_perl-2.0.10-apache24-tests-2.patch b/www-apache/mod_perl/files/mod_perl-2.0.10-apache24-tests-2.patch deleted file mode 100644 index 29e24cc770d6..000000000000 --- a/www-apache/mod_perl/files/mod_perl-2.0.10-apache24-tests-2.patch +++ /dev/null @@ -1,23 +0,0 @@ -Author: Stefan Fritsch <sf@sfritsch.de> -Source: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=849082 - ---- ./t/filter/TestFilter/in_bbs_inject_header.pm.orig 2016-10-27 22:11:16.000000000 +0200 -+++ ./t/filter/TestFilter/in_bbs_inject_header.pm 2016-12-24 06:55:19.049606491 +0100 -@@ -181,7 +181,7 @@ - - if ($data and $data =~ /^POST/) { - # demonstrate how to add a header while processing other headers -- my $header = "$header1_key: $header1_val\n"; -+ my $header = "$header1_key: $header1_val\r\n"; - push @{ $ctx->{buckets} }, APR::Bucket->new($c->bucket_alloc, $header); - debug "queued header [$header]"; - } -@@ -199,7 +199,7 @@ - # we hit the headers and body separator, which is a good - # time to add extra headers: - for my $key (keys %headers) { -- my $header = "$key: $headers{$key}\n"; -+ my $header = "$key: $headers{$key}\r\n"; - push @{ $ctx->{buckets} }, APR::Bucket->new($c->bucket_alloc, $header); - debug "queued header [$header]"; - } |