libsoup2.4 (2.74.3-8.1)
[PTS] [DDPO]
OK: VCS matches the version in the archive
- Git: https://salsa.debian.org/gnome-team/libsoup.git
-
- Branch: debian/latest
- Path: debian/changelog
- Repo size: 1769472
- Browser: https://salsa.debian.org/gnome-team/libsoup
- Last scan: 2024-12-10 15:10:11+00
- Next scan: 2024-12-17 03:13:00+00
- Debian changelog in Git:
libsoup2.4 (2.74.3-8.1) unstable; urgency=high
* Non-maintainer upload.
* Backport upstream fixes for
- CVE-2024-52530: HTTP request smuggling with null bytes at the end of
header names (Closes: #1088812)
- CVE-2024-52531: buffer overflow in soup_header_parse_param_list_strict
(Closes: #1089240)
- CVE-2024-52532: infinite loop / potential DoS in reading certain
data from WebSocket clients (Closes: #1089238).
-- Sean Whitton <spwhitton@spwhitton.name> Tue, 10 Dec 2024 13:17:25 +0800
- This branch is even with tag debian/2.74.3-8.1