85 Commits

Author SHA1 Message Date
hanjinpeng
0e9e51836c CVE-2024-40725
(cherry picked from commit 4842af1d416d8726717a19c1347d9a30e53b3442)
2024-08-27 10:43:48 +08:00
openeuler-ci-bot
7b98e3a8fc
!211 [sync] PR-205: fix some CVEs
From: @openeuler-sync-bot 
Reviewed-by: @zengwefeng 
Signed-off-by: @zengwefeng
2024-07-15 03:20:54 +00:00
chengyechun
c5de3f6103 fix some CVEs
(cherry picked from commit 1cca01b2211451755f1c4c165bd51dbec421615f)
2024-07-12 09:46:56 +08:00
openeuler-ci-bot
c52f04b14d
!210 fix CVE-2024-36387
From: @chengyechun 
Reviewed-by: @jiangheng12 
Signed-off-by: @jiangheng12
2024-07-10 11:34:27 +00:00
chengyechun
120eae8e6d fix CVE-2024-36387 2024-07-10 11:09:49 +08:00
openeuler-ci-bot
6a5fb88940
!209 使用_vendor宏代替openEulr固定字段,各OS发行版可使用同源软件包
From: @chengyechun 
Reviewed-by: @jiangheng12 
Signed-off-by: @jiangheng12
2024-07-10 02:36:55 +00:00
chengyechun
042a9898a6 replace openEuler with _vendor 2024-07-09 16:34:49 +08:00
openeuler-ci-bot
ccdf4bbba2
!208 [sync] PR-197: Only allocate a heap buffer if the configured size is greater than the stack-allocated buffer.
From: @openeuler-sync-bot 
Reviewed-by: @jiangheng12 
Signed-off-by: @jiangheng12
2024-07-09 08:22:04 +00:00
zhangyaqi
da9f7bae5d allocate a heap buffer if the configured size is greater than the stack-allocated buffer
(cherry picked from commit c88453fff43ca873b7dac70377f50d1278528b58)
2024-07-09 15:12:54 +08:00
openeuler-ci-bot
7a74fb3959
!187 [sync] PR-183: fix CVE-2024-24795,CVE-2023-38709,CVE-2024-27316 and sync some patches from upstream
From: @openeuler-sync-bot 
Reviewed-by: @sunsuwan 
Signed-off-by: @sunsuwan
2024-05-07 03:30:43 +00:00
chengyechun
c488ad560c fix CVE-2024-24795,CVE-2023-38709,CVE-2024-27316 and sync some patches from upstream
(cherry picked from commit 63648433e7db79115f79ef343c7c065bb260cbe6)
2024-05-07 10:30:01 +08:00
openeuler-ci-bot
15ea04a615
!179 update to httpd-2.4.58
From: @chengyechun 
Reviewed-by: @robertxw 
Signed-off-by: @robertxw
2024-01-31 03:18:42 +00:00
xietangxin
f478188b58 update to httpd-2.4.58 2024-01-29 08:49:17 +00:00
openeuler-ci-bot
e4d04ae9eb
!177 fix CVE-2023-31122 and CVE-2023-45802 and CVE-2023-43622
From: @chengyechun 
Reviewed-by: @robertxw 
Signed-off-by: @robertxw
2023-11-06 06:21:50 +00:00
chengyechun
c4a8f2350f fix CVE-2023-31122 and CVe-2023-45802 and CVE-2023-43622 2023-11-03 16:46:22 +08:00
openeuler-ci-bot
9247758744
!158 fix memory leak in calc_sha256_hash
From: @chengyechun 
Reviewed-by: @ 
Signed-off-by: @robertxw
2023-08-14 11:15:34 +00:00
chengyechun
d0c5a4dddf fix memory leak in calc_sha256_hash 2023-08-14 15:27:40 +08:00
openeuler-ci-bot
6f7800bd70
!143 fix CVE-2023-27522, CVE-2023-25690
From: @chengyechun 
Reviewed-by: @seuzw 
Signed-off-by: @seuzw
2023-03-09 12:48:25 +00:00
chengyechun
406636996f fix CVE-2023-27522 2023-03-09 15:05:04 +08:00
openeuler-ci-bot
6cf452d410
!139 fix build error for loongarch64
From: @zhangwenlong01 
Reviewed-by: @seuzw 
Signed-off-by: @seuzw
2023-03-04 08:22:35 +00:00
Wenlong Zhang
b8aab143f8 fix build error for loongarch64
Signed-off-by: Wenlong Zhang <zhangwenlong@loongson.cn>
2023-03-04 15:07:58 +08:00
openeuler-ci-bot
2e85242414
!131 update to httpd-2.4.55
From: @chengyechun 
Reviewed-by: @seuzw 
Signed-off-by: @seuzw
2023-02-02 01:30:10 +00:00
chengyechun
20b80f986a update to httpd-2.4.55 2023-02-01 18:04:51 +08:00
openeuler-ci-bot
7957bd91cb
!123 Reduce the dependency of httpd on system-logos installation
From: @chengyechun 
Reviewed-by: @seuzw 
Signed-off-by: @seuzw
2022-12-15 08:23:38 +00:00
chengyechun
1eaec259ba minimizing installation dependencies 2022-12-15 15:08:44 +08:00
openeuler-ci-bot
86bd3fb993
!117 fix the name of the CVE patch
From: @chengyechun 
Reviewed-by: @seuzw 
Signed-off-by: @seuzw
2022-12-13 07:23:40 +00:00
chengyechun
701ad22b4a fix the name of the CVE patch 2022-12-13 14:43:07 +08:00
openeuler-ci-bot
4b6ddaf98d
!106 fix CVE-2022-28330
From: @chengyechun 
Reviewed-by: @seuzw 
Signed-off-by: @seuzw
2022-07-21 06:37:23 +00:00
chengyechun
f09ae85f8c fix CVE-2022-28330 2022-07-21 10:34:08 +08:00
openeuler-ci-bot
30fbb9c81e
!101 Switch from PCRE to PCRE2
From: @seuzw 
Reviewed-by: @gebidelidaye 
Signed-off-by: @gebidelidaye
2022-06-27 06:40:37 +00:00
seuzw
20cf4375ce Switch from PCRE to PCRE2 2022-06-25 10:56:30 +08:00
openeuler-ci-bot
01ba7ead28
!98 fix CVE2022-31813、CVE-2022-28614、CVE-2022-30522、CVE-2022-30556、CVE-2022-29404、CVE-2022-26377
From: @chengyechun 
Reviewed-by: @seuzw 
Signed-off-by: @seuzw
2022-06-20 11:06:03 +00:00
chengyechun
969f12408b fix som CVE 2022-06-20 17:35:04 +08:00
openeuler-ci-bot
6b4829da2d
!94 fix CVE-2022-28615
From: @chengyechun 
Reviewed-by: @seuzw 
Signed-off-by: @seuzw
2022-06-20 09:19:26 +00:00
chengyechun
cb9594df3e fix CVE-2022-28615 2022-06-20 14:29:13 +08:00
openeuler-ci-bot
5e6c1b061a
!88 fix CVE-2021-44224 sync from 22.03
From: @yangl777 
Reviewed-by: @zengwefeng 
Signed-off-by: @zengwefeng
2022-03-30 06:35:19 +00:00
yangl777
aa32753582 fix CVE-2021-44224 sync from 22.03 2022-03-30 10:44:24 +08:00
openeuler-ci-bot
2fedea6cdc
!87 fix CVE-2022-22719 CVE-2022-22720 CVE-2022-22721 CVE-2022-23934 sync from 22.03
From: @yangl777 
Reviewed-by: @zengwefeng 
Signed-off-by: @zengwefeng
2022-03-29 13:17:06 +00:00
yangl777
d87931197d fix CVE-2022-22719 CVE-2022-22720 CVE-2022-22721 CVE-2022-23934 sync from 22.03 2022-03-28 19:29:10 +08:00
openeuler-ci-bot
54fc6ffb0c
!85 update httpd to 2.4.51
From: @yangl777 
Reviewed-by: @zengwefeng 
Signed-off-by: @zengwefeng
2022-03-28 02:50:32 +00:00
yangl777
84241df888 update httpd to 2.4.51 2022-03-26 16:36:29 +08:00
openeuler-ci-bot
e51914c15c
!75 fix 'httpd -t' warn
Merge pull request !75 from quanhongfei/master
2022-01-25 08:36:46 +00:00
quanhongfei
b2731113a6 fix warn 2022-01-24 20:00:30 +08:00
openeuler-ci-bot
6036ee34bd !69 bugfix CVE-2021-44790
Merge pull request !69 from orange-snn/master
2021-12-29 06:10:06 +00:00
orange-snn
56509aaab0 fix CVE-2021-44790 2021-12-29 09:22:43 +08:00
openeuler-ci-bot
2e5ba1ef39 !62 fix Integer overflow in ap_timeout_parameter_parse
From: @eaglegai
Reviewed-by: @zengwefeng
Signed-off-by: @zengwefeng
2021-11-05 09:29:02 +00:00
eaglegai
abb3fee00a fix fuzz error 2021-11-05 14:36:32 +08:00
openeuler-ci-bot
bb89f93778 !51 fix CVE-2021-39275 and fix CVE-2021-40438 fully and correctly
From: @eaglegai
Reviewed-by: @zengwefeng
Signed-off-by: @zengwefeng
2021-09-30 08:44:40 +00:00
eaglegai
66db243604 fix CVE-2021-40438 fully and correctly
fix CVE-2021-39275
2021-09-30 10:38:24 +08:00
openeuler-ci-bot
779ff240be !50 backport to fix CVE-2021-34798 CVE-2021-36160 CVE-2021-40438
From: @eaglegai
Reviewed-by: @zengwefeng
Signed-off-by: @zengwefeng
2021-09-28 09:07:12 +00:00