~ubuntu-branches/debian/squeeze/libcommons-fileupload-java/squeeze

Viewing all changes in revision 11.

  • Committer: Package Import Robot
  • Author(s): Emmanuel Bourg
  • Date: 2014-02-07 17:12:35 UTC
  • Revision ID: package-import@ubuntu.com-20140207171235-mz79q4k0eq666mfa
Tags: 1.2.2-1+deb6u2
* Team upload.
* Fix CVE-2014-0050: Specially crafted input can trigger an infinite loop
  if the buffer used by the MultipartStream is not big enough. When
  constructing MultipartStream enforce the requirements for buffer size
  by throwing an IllegalArgumentException if the requested buffer size is
  too small. This prevents the DoS.
* Enable the unit tests

expand all expand all

Show diffs side-by-side

added added

removed removed

Lines of Context: