[Nagiosplug-checkins] nagiosplug NEWS,1.31,1.32

Holger Weiss hweiss at users.sourceforge.net
Sun Jun 17 21:22:53 CEST 2007


Update of /cvsroot/nagiosplug/nagiosplug
In directory sc8-pr-cvs16.sourceforge.net:/tmp/cvs-serv12629

Modified Files:
	NEWS 
Log Message:
Fix buffer overflow vulnerabilities when parsing HTTP redirect
'Location:' strings using sscanf(3) (Nobuhiro Ban - 1687867)


Index: NEWS
===================================================================
RCS file: /cvsroot/nagiosplug/nagiosplug/NEWS,v
retrieving revision 1.31
retrieving revision 1.32
diff -u -d -r1.31 -r1.32
--- NEWS	4 Jun 2007 08:58:12 -0000	1.31
+++ NEWS	17 Jun 2007 19:22:50 -0000	1.32
@@ -1,5 +1,8 @@
 This file documents the major additions and syntax changes between releases.
 
+1.4.10 or 1.5 ??
+	Fix check_http buffer overflow vulnerability when following HTTP redirects
+
 1.4.9 4th June 2006
 	Inclusion of contrib/check_cluster2 as check_cluster with some improvements
 	New/improved -E/--skip-stderr and -S/--skip-stdout options for check_by_ssh





More information about the Commits mailing list