trafficserver 8.1.1+ds-1.1 source package in Debian

Changelog

trafficserver (8.1.1+ds-1.1) unstable; urgency=medium

  * Non-maintainer upload.
  * Address CVE-2021-27577, CVE-2021-32565, CVE-2021-32566, CVE-2021-32567 and
    CVE-2021-35474.
    - CVE-2021-27577: Incorrect handling of url fragment leads to cache
      poisoning
    - CVE-2021-32565: HTTP Request Smuggling, content length with invalid
      charters
    - CVE-2021-32566: Specific sequence of HTTP/2 frames can cause ATS to
      crash
    - CVE-2021-32567: Reading HTTP/2 frames too many times
    - CVE-2021-35474: Dynamic stack buffer overflow in cachekey plugin
    (Closes: #990303)

 -- Salvatore Bonaccorso <email address hidden>  Thu, 15 Jul 2021 21:48:17 +0200

Upload details

Uploaded by:
Jean Baptiste Favre
Uploaded to:
Sid
Original maintainer:
Jean Baptiste Favre
Architectures:
any
Section:
web
Urgency:
Medium Urgency

See full publishing history Publishing

Series Pocket Published Component Section

Builds

Downloads

File Size SHA-256 Checksum
trafficserver_8.1.1+ds-1.1.dsc 2.8 KiB 23887ef0f0e71b03d0f87b86171ff377b2c413fb7d63bac78d79fece40f3c433
trafficserver_8.1.1+ds.orig.tar.xz 7.5 MiB 42548d4f7c19764b3e7501a1feb9c55273c060ebbf10fbf649a17efde046193d
trafficserver_8.1.1+ds-1.1.debian.tar.xz 43.0 KiB 34e2af5fa308e8ca4b101861d2dddd4f446bc922e9c9161fd4d7112e58e06c2c

Available diffs

No changes file available.

Binary packages built by this source