pali pushed to cherokee (f20). "Resolves bz 1114461 - CVE-2014-4668 cherokee: authentication bypass when LDAP server allows unauthenticated binds (..more)"

notifications at fedoraproject.org notifications at fedoraproject.org
Wed Apr 15 14:25:51 UTC 2015


>From e1738cd632a98c847eba65d753df6e74905944ee Mon Sep 17 00:00:00 2001
From: =?UTF-8?q?Pavel=20Lis=C3=BD?= <pali at fedoraproject.org>
Date: Wed, 15 Apr 2015 16:13:28 +0200
Subject: Resolves bz 1114461 - CVE-2014-4668 cherokee: authentication bypass
 when LDAP server allows unauthenticated binds

- Resolves bz 1094901 - cherokee: script and/or trigger should not directly enable systemd units
- Resolves bz  959170 - cherokee-worker and cherokee-admin want to use execstack (EL5)

diff --git a/.gitignore b/.gitignore
index 844f38c..c32ad55 100644
--- a/.gitignore
+++ b/.gitignore
@@ -9,3 +9,4 @@ openssl-1.0.0d.tar.gz
 /cherokee-1.2.100.tar.gz
 /cherokee-1.2.101.tar.gz
 /cherokee-1.2.103.tar.gz
+/openssl-1.0.0r.tar.gz
diff --git a/sources b/sources
index 33c32b7..d247e58 100644
--- a/sources
+++ b/sources
@@ -1 +1 @@
-527b3de97ef9727bfd5f6832043cf916  cherokee-1.2.103.tar.gz
+ea48d0ad53e10f06a9475d8cdc209dfa  openssl-1.0.0r.tar.gz
-- 
cgit v0.10.2


	http://pkgs.fedoraproject.org/cgit/cherokee.git/commit/?h=f20&id=e1738cd632a98c847eba65d753df6e74905944ee


More information about the scm-commits mailing list