]> granicus.if.org Git - apache/commitdiff
backported
authorEric Covener <covener@apache.org>
Wed, 4 Mar 2015 19:22:14 +0000 (19:22 +0000)
committerEric Covener <covener@apache.org>
Wed, 4 Mar 2015 19:22:14 +0000 (19:22 +0000)
git-svn-id: https://svn.apache.org/repos/asf/httpd/httpd/trunk@1664122 13f79535-47bb-0310-9956-ffa450edef68

CHANGES

diff --git a/CHANGES b/CHANGES
index 7c1567a80733f22695d1f682e5becc0c7dc6ea6a..1d1acd51c2baa6b8c3717b77ab97fbbe1f161072 100644 (file)
--- a/CHANGES
+++ b/CHANGES
@@ -1,11 +1,6 @@
                                                          -*- coding: utf-8 -*-
 Changes with Apache 2.5.0
 
-  *) SECURITY: CVE-2015-0228 (cve.mitre.org)
-     mod_lua: A maliciously crafted websockets PING after a script
-     calls r:wsupgrade() can cause a child process crash. 
-     [Edward Lu <Chaosed0 gmail.com>]
-
   *) core: If explicitly configured, use the KeepaliveTimeout value of the
      virtual host which handled the latest request on the connection, or by
      default the one of the first virtual host bound to the same IP:port.