Add CVE-2025-13836-http-resp-cont-len.patch (bsc#1254400, CVE-2025-13836)

Prevent reading an HTTP response from a server, if no read amount is
specified, with using Content-Length per default as the length.
This commit is contained in:
2025-12-18 16:07:31 +01:00
parent d43b1c8899
commit d6395a2d78
3 changed files with 169 additions and 0 deletions

View File

@@ -1,3 +1,15 @@
-------------------------------------------------------------------
Thu Dec 18 15:53:59 CET 2025 - Matej Cepl <mcepl@suse.com>
-
-------------------------------------------------------------------
Thu Dec 18 10:33:44 UTC 2025 - Matej Cepl <mcepl@cepl.eu>
- Add CVE-2025-13836-http-resp-cont-len.patch (bsc#1254400,
CVE-2025-13836) to prevent reading an HTTP response from
a server, if no read amount is specified, with using
Content-Length per default as the length.
-------------------------------------------------------------------
Thu Nov 13 17:13:03 UTC 2025 - Matej Cepl <mcepl@cepl.eu>