summaryrefslogtreecommitdiffstats
path: root/package/libsoup/0001-cookie-jar-bail-if-hostname-is-an-empty-string.patch
Commit message (Collapse)AuthorAgeFilesLines
* libsoup: add upstream security fixBaruch Siach2018-08-281-0/+35
Fixes CVE-2018-12910: The get_cookies function in soup-cookie-jar.c in libsoup 2.63.2 allows attackers to have unspecified impact via an empty hostname. Cc: Fabrice Fontaine <fontaine.fabrice@gmail.com> Signed-off-by: Baruch Siach <baruch@tkos.co.il> Signed-off-by: Peter Korsgaard <peter@korsgaard.com>
OpenPOWER on IntegriCloud