Package Release Info

haserl-0.9.36-bp154.2.20

Update Info: Base Release
Available in Package Hub : 15 SP4

platforms

AArch64
ppc64le
s390x
x86-64

subpackages

haserl
haserl-debuginfo
haserl-debugsource

Change Logs

Version: 0.9.35-bp150.2.4
* Thu Jul 30 2015 dimstar@opensuse.org
- Update to version 0.9.35:
  + Fixed a possible segfault if CONTENT_TYPE is not specified.
- Changes from version 0.9.34:
  + Haserl is now compatible with Lua 5.3 (in addition to 5.1, and
    5.2).
  + Fix processing of headers in rfc2388.c.
* Sat Jan 17 2015 p.drouand@gmail.com
- Update to version 0.9.33
  * Fix various security vulnerabilities - most serious is a
    Heap Overflow Vulnerability in sliding_buffer.c
  * Allow PUT and DELETE method (But prefix is still POST/GET)
  * On POST/PUT, Content-Type is not x-www-urlencoded, then
  the body of the message is stored verbatim in POST_body=
- Remove obsolete fix-make.diff
- Remove autoreconf calling; not needed anymore
- Use %configure instead of./configure
* Fri Dec 02 2011 coolo@suse.com
- add automake as buildrequire to avoid implicit dependency
* Tue Oct 12 2010 coolo@novell.com
- add patch to fix makefile syntax
* Sun Sep 26 2010 ro@suse.de
- add pkg-config to buildrequires
* Tue Aug 19 2008 garloff@suse.de
- Update to haserl-0.9.24:
  * bash extensions
  * regression tests (make check)
  * docu updates
  * myputenv enhancements
  * observe CONTENT_LENGTH
* Thu Nov 29 2007 garloff@suse.de
- Update to haserl-0.9.21:
  * Command line option handling reworked
  * major refactoring
  * various little bugs killed
  * lua support
  * custom handler for uploading large files
  * new comment tag
* Tue Jul 10 2007 garloff@suse.de
- Initial creation of package haserl-0.8.0
Version: 0.9.36-bp151.4.3.1
* Wed Apr 14 2021 Ferdinand Thiessen <rpm@fthiessen.de>
- Update to version 0.9.36:
  * Fixed: Its possible to issue a PUT request without a CONTENT-TYPE.
    Assume an octet-stream in that case. ( CVE-2021-29133 )
  * Change the Prefix for variables to be the REQUEST_METHOD
    (PUT/DELETE/GET/POST) THIS IS A BREAKING CHANGE
  * Mitigations vs running haserl to get access to files not
    available to the user.