1
0
mirror of https://git.FreeBSD.org/ports.git synced 2025-01-11 07:22:22 +00:00
freebsd-ports/www/nginx
Jochen Neumeister acae1e5f60 Add patch for CVE-2019-20372
NGINX before 1.17.7, with certain error_page configurations,
allows HTTP request smuggling, as demonstrated by the ability
of an attacker to read unauthorized web pages in environments
where NGINX is being fronted by a load balancer.

https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-20372

PR:		243952
Reported by:	koobs and many more
MFH:		2020Q1
Security:	c1202de8-4b29-11ea-9673-4c72b94353b5
Sponsored by:	Netzkommune GmbH
2020-02-09 11:16:40 +00:00
..
files Add patch for CVE-2019-20372 2020-02-09 11:16:40 +00:00
distinfo Update 3rd party module 2020-01-28 23:26:02 +00:00
Makefile Add patch for CVE-2019-20372 2020-02-09 11:16:40 +00:00
Makefile.extmod Update 3rd party module 2020-01-28 23:26:02 +00:00
Makefile.options.desc Add 3rd party module nginx-link-function 2020-01-22 13:26:55 +00:00
pkg-descr
pkg-plist Update 3rd party module 2020-01-28 23:26:02 +00:00