[ubuntu/focal-security] mod-wsgi 4.6.8-1ubuntu3.1 (Accepted)
Marc Deslauriers
marc.deslauriers at canonical.com
Thu Aug 4 16:09:34 UTC 2022
mod-wsgi (4.6.8-1ubuntu3.1) focal-security; urgency=medium
* SECURITY UPDATE: Trusted Proxy Headers Removing Bypass
- debian/patches/CVE-2022-2255.patch: ensure that X-Client-IP header is
dropped when is not a trusted header in src/server/mod_wsgi.c.
- CVE-2022-2255
Date: 2022-07-25 14:22:12.621109+00:00
Changed-By: Marc Deslauriers <marc.deslauriers at canonical.com>
https://launchpad.net/ubuntu/+source/mod-wsgi/4.6.8-1ubuntu3.1
-------------- next part --------------
Sorry, changesfile not available.
More information about the Focal-changes
mailing list