Ubuntu

“tinyproxy” 1.8.3-1ubuntu0.1 source package in The Precise Pangolin

Publishing history

1.8.3-1ubuntu0.1
PUBLISHED: Precise pocket Updates in component universe and section net
  • Published on 2013-03-16
  • Copied from ubuntu precise in Private PPA for Ubuntu Security Team by Ubuntu Archive Robot
1.8.3-1ubuntu0.1
PUBLISHED: Precise pocket Security in component universe and section net
  • Published on 2013-03-16
  • Copied from ubuntu precise in Private PPA for Ubuntu Security Team by Seth Arnold

Builds

Changelog

tinyproxy (1.8.3-1ubuntu0.1) precise-security; urgency=low

  * SECURITY UPDATE: Fix for denial of service vulnerability where remote
    attackers send crafted request headers. (LP: #1154502)
    - debian/patches/001-CVE-2012-3505.patch: Limit the number of headers to
      prevent DoS attacks. Randomize hashmaps in order to avoid fake headers
      getting included in the same bucket, allowing for DoS attacks.
    - CVE-2012-3505
 -- Christian Kuersteiner <email address hidden>   Wed, 13 Mar 2013 16:42:14 +0700