[ubuntu/jammy-security] twisted 22.1.0-2ubuntu2.6 (Accepted)
Rodrigo Figueiredo Zaiden
rodrigo.zaiden at canonical.com
Tue Nov 26 17:49:17 UTC 2024
twisted (22.1.0-2ubuntu2.6) jammy-security; urgency=medium
* SECURITY UPDATE: Out-of-order HTTP request processing.
- debian/patches/CVE-2024-41671-*.patch: Move self.allContentReceived()
after self._dataBuffer.append(data) in src/twisted/web/http.py. Add
tests.
- CVE-2024-41671
Date: 2024-11-25 19:05:09.768788+00:00
Changed-By: Hlib Korzhynskyy <hlib.korzhynskyy at canonical.com>
Signed-By: Rodrigo Figueiredo Zaiden <rodrigo.zaiden at canonical.com>
https://launchpad.net/ubuntu/+source/twisted/22.1.0-2ubuntu2.6
-------------- next part --------------
Sorry, changesfile not available.
More information about the jammy-changes
mailing list