Branches for Trusty

Name Status Last Modified Last Commit
lp:ubuntu/trusty-security/commons-httpclient 2 Mature 2015-10-14 15:27:00 UTC
14. * SECURITY UPDATE: improper certifica...

Author: Marc Deslauriers
Revision Date: 2015-10-01 08:51:52 UTC

* SECURITY UPDATE: improper certificate hostname verification
  - debian/patches/CVE-2014-3577.patch: fix Common Name logic in
    src/java/org/apache/commons/httpclient/protocol/SSLProtocolSocketFactory.java.
  - CVE-2014-3577
* SECURITY UPDATE: denial of service via failure to set socket timeout
  - debian/patches/CVE-2015-5262.patch: respect configured timeout in
    src/java/org/apache/commons/httpclient/protocol/SSLProtocolSocketFactory.java.
  - CVE-2015-5262
* debian/ant.properties: bump version to 1.5 to handle security fixes.

lp:ubuntu/trusty-updates/commons-httpclient 2 Mature 2015-10-14 15:35:47 UTC
14. * SECURITY UPDATE: improper certifica...

Author: Marc Deslauriers
Revision Date: 2015-10-01 08:51:52 UTC

* SECURITY UPDATE: improper certificate hostname verification
  - debian/patches/CVE-2014-3577.patch: fix Common Name logic in
    src/java/org/apache/commons/httpclient/protocol/SSLProtocolSocketFactory.java.
  - CVE-2014-3577
* SECURITY UPDATE: denial of service via failure to set socket timeout
  - debian/patches/CVE-2015-5262.patch: respect configured timeout in
    src/java/org/apache/commons/httpclient/protocol/SSLProtocolSocketFactory.java.
  - CVE-2015-5262
* debian/ant.properties: bump version to 1.5 to handle security fixes.

lp:ubuntu/trusty/commons-httpclient 1 Development 2013-10-21 01:35:01 UTC
13. * Non-maintainer upload. * Fix CVE-20...

Author: Alberto Fernández
Revision Date: 2012-12-06 14:28:00 UTC

* Non-maintainer upload.
* Fix CVE-2012-5783 (Closes: #692442)
* Fix CN extraction from DN of X500 principal.
* Fix wildcard validation on ssl connections

13 of 3 results