forked from pool/python-waitress
- update to 0.9.0:
* Security/Protections - Building on the changes made in pull request 117, add in checking for line feed/carriage return HTTP Response Splitting in the status line, as well as the key of a header. See https://github.com/Pylons/waitress/pull/124 and https://github.com/Pylons/waitress/issues/122. - Waitress will no longer accept headers or status lines with newline/carriage returns in them, thereby disallowing HTTP Response Splitting. * Bugfixes - FileBasedBuffer and more important ReadOnlyFileBasedBuffer no longer report False when tested with bool(), instead always returning True, and becoming more iterator like. - Call prune() on the output buffer at the end of a request so that it doesn't continue to grow without bounds. OBS-URL: https://build.opensuse.org/package/show/devel:languages:python/python-waitress?expand=0&rev=15
This commit is contained in:
@@ -1,3 +1,22 @@
|
||||
-------------------------------------------------------------------
|
||||
Fri May 20 11:27:26 UTC 2016 - dmueller@suse.com
|
||||
|
||||
- update to 0.9.0:
|
||||
* Security/Protections
|
||||
- Building on the changes made in pull request 117, add in checking for line
|
||||
feed/carriage return HTTP Response Splitting in the status line, as well as
|
||||
the key of a header. See https://github.com/Pylons/waitress/pull/124 and
|
||||
https://github.com/Pylons/waitress/issues/122.
|
||||
- Waitress will no longer accept headers or status lines with
|
||||
newline/carriage returns in them, thereby disallowing HTTP Response
|
||||
Splitting.
|
||||
* Bugfixes
|
||||
- FileBasedBuffer and more important ReadOnlyFileBasedBuffer no longer report
|
||||
False when tested with bool(), instead always returning True, and becoming
|
||||
more iterator like.
|
||||
- Call prune() on the output buffer at the end of a request so that it doesn't
|
||||
continue to grow without bounds.
|
||||
|
||||
-------------------------------------------------------------------
|
||||
Fri Dec 12 22:08:09 UTC 2014 - tbechtold@suse.com
|
||||
|
||||
|
Reference in New Issue
Block a user