-
Tue Feb 25 2020 Sergio Correia <scorreia@redhat.com> - 2.7.1-8.2
- Do not break ABI with CVE-2019-15605 fix
-
Fri Feb 21 2020 Sergio Correia <scorreia@redhat.com> - 2.7.1-8.1
- Resolves: CVE-2019-15605 http-parser: nodejs: HTTP request
smuggling using malformed Transfer-Encoding header
-
Mon Apr 01 2019 Jakub Hrozek <jhrozek@redhat.com> - 2.7.1-8
- Backport needed test fixes
- Related: rhbz#1666024 - CVE-2018-7159 http-parser: nodejs: HTTP parser
allowed for spaces inside Content-Length header
values [rhel-7]
-
Sat Mar 23 2019 Jakub Hrozek <jhrozek@redhat.com> - 2.7.1-7
- Resolves: rhbz#1666024 - CVE-2018-7159 http-parser: nodejs: HTTP parser
allowed for spaces inside Content-Length header
values [rhel-7]
-
Fri Mar 22 2019 Jakub Hrozek <jhrozek@redhat.com> - 2.7.1-6
- Resolves: rhbz#1666381 - CVE-2018-12121 http-parser: nodejs: Denial of
Service with large HTTP headers [rhel-7]
-
Thu Aug 10 2017 Fabiano FidĂȘncio <fidencio@redhat.com> - 2.7.1-5
- Bump http-parser release number to avoid people pulling EPEL package instead
of RHEL package
Resolves: rhbz#1479471
-
Wed Feb 01 2017 Fabiano FidĂȘncio <fidencio@redhat.com> - 2.7.1-1
- Import spec file and patches from latest fc25 package
Resolves: rhbz#1393819