]> granicus.if.org Git - apache/commitdiff
propose low impact mod_negotiation CVE for 2.4
authorEric Covener <covener@apache.org>
Sat, 30 Jun 2012 22:55:09 +0000 (22:55 +0000)
committerEric Covener <covener@apache.org>
Sat, 30 Jun 2012 22:55:09 +0000 (22:55 +0000)
git-svn-id: https://svn.apache.org/repos/asf/httpd/httpd/branches/2.4.x@1355832 13f79535-47bb-0310-9956-ffa450edef68

STATUS

diff --git a/STATUS b/STATUS
index 74bd208d7cdad8beb89bd8df2d42bf45673b312f..c963028605af564d46d0ceaa6c145e100c7124e1 100644 (file)
--- a/STATUS
+++ b/STATUS
@@ -152,6 +152,11 @@ PATCHES PROPOSED TO BACKPORT FROM TRUNK:
      2.4.x patch: trunk patch (ex CHANGES) works
      +1: jorton
 
+   * mod_negotiation: CVE-2012-2687 XSS in mod_negotiation
+     trunk patch: http://svn.apache.org/viewvc?view=revision&revision=1349905
+     2.4.x patch: trunk works
+     +1 covener
+
 PATCHES/ISSUES THAT ARE STALLED
 
   * cross-compile: allow to provide CC_FOR_BUILD so that gen_test_char will be