Path to this page:
Next | Query returned 1 messages, browsing 1 to 10 | previous
CVS Commit History:
2018-12-12 07:54:14 by S.P.Zeidler | Files touched by this commit (3) | |
Log message:
Pullup ticket #5884 - requested by nia
www/nginx: security update
Revisions pulled up:
- www/nginx/Makefile 1.80
- www/nginx/distinfo 1.65
- www/nginx/options.mk 1.48
-------------------------------------------------------------------
Module Name: pkgsrc
Committed By: nia
Date: Fri Nov 16 00:26:19 UTC 2018
Modified Files:
pkgsrc/www/nginx: Makefile distinfo options.mk
Log message:
www/nginx: Update to nginx-1.14.1
Changes with nginx 1.14.1 06 Nov 2018
*) Security: when using HTTP/2 a client might cause excessive memory
consumption (CVE-2018-16843) and CPU usage (CVE-2018-16844).
*) Security: processing of a specially crafted mp4 file with the
ngx_http_mp4_module might result in worker process memory disclosure
(CVE-2018-16845).
*) Bugfix: working with gRPC backends might result in excessive memory
consumption.
To generate a diff of this commit:
cvs rdiff -u -r1.79 -r1.80 pkgsrc/www/nginx/Makefile
cvs rdiff -u -r1.64 -r1.65 pkgsrc/www/nginx/distinfo
cvs rdiff -u -r1.47 -r1.48 pkgsrc/www/nginx/options.mk
|
Next | Query returned 1 messages, browsing 1 to 10 | previous