UbuntuUpdates.org

Package "libhttp-parser-dev"

Name: libhttp-parser-dev

Description:

parser for HTTP messages: development libraries and header files

Latest version: 2.7.1-2ubuntu0.1
Release: bionic (18.04)
Level: security
Repository: main
Head package: http-parser
Homepage: https://github.com/joyent/http-parser

Links


Download "libhttp-parser-dev"


Other versions of "libhttp-parser-dev" in Bionic

Repository Area Version
base main 2.7.1-2
updates main 2.7.1-2ubuntu0.1

Changelog

Version: 2.7.1-2ubuntu0.1 2022-08-10 19:06:22 UTC

  http-parser (2.7.1-2ubuntu0.1) bionic-security; urgency=medium

  * SECURITY UPDATE: request smuggling
    - debian/patches/CVE-2020-8287.patch: unset F_CHUNKED on new Transfer-Encoding
      in http_parser.c, test.c.
    - CVE-2020-8287

 -- Leonidas Da Silva Barbosa <email address hidden> Mon, 08 Aug 2022 13:48:40 -0300

CVE-2020-8287 Node.js versions before 10.23.1, 12.20.1, 14.15.4, 15.5.1 allow two copies of a header field in an HTTP request (for example, two Transfer-Encoding h



About   -   Send Feedback to @ubuntu_updates