Skip to content
This repository has been archived by the owner on Apr 12, 2021. It is now read-only.
Permalink

Comparing changes

Choose two branches to see what’s changed or to start a new pull request. If you need to, you can also or learn more about diff comparisons.

Open a pull request

Create a new pull request by comparing changes across two branches. If you need to, you can also . Learn more about diff comparisons here.
base repository: NixOS/nixpkgs-channels
base: a7ceb2536ab1
Choose a base ref
...
head repository: NixOS/nixpkgs-channels
compare: 511766df7a36
Choose a head ref
  • 4 commits
  • 2 files changed
  • 3 contributors

Commits on Apr 29, 2020

  1. coturn: apply patch for CVE-2020-6061/6062

    Fixes: CVE-2020-6061, CVE-2020-6062
    
    An exploitable heap overflow vulnerability exists in the way CoTURN
    4.5.1.1 web server parses POST requests. A specially crafted HTTP
    POST request can lead to information leaks and other misbehavior.
    An attacker needs to send an HTTPS request to trigger this vulnerability.
    
    An exploitable denial-of-service vulnerability exists in the way
    CoTURN 4.5.1.1 web server parses POST requests. A specially crafted
    HTTP POST request can lead to server crash and denial of service.
    An attacker needs to send an HTTP request to trigger this vulnerability.
    
    (cherry picked from commit 704a018)
    mweinelt committed Apr 29, 2020
    Copy the full SHA
    ac3ed15 View commit details
    Browse the repository at this point in the history
  2. Merge pull request #86271 from mweinelt/19.09/coturn/CVE-2020-6061+6062

    [19.09] coturn: apply patch for CVE-2020-6061/6062
    rasendubi committed Apr 29, 2020
    Copy the full SHA
    1d06d40 View commit details
    Browse the repository at this point in the history
  3. monotone: openssl in botan is not needed, so drop to avoid old openssl

    (cherry picked from commit 4644776)
    7c6f434c committed Apr 29, 2020
    Copy the full SHA
    e27493e View commit details
    Browse the repository at this point in the history
  4. Merge pull request #86340 from 7c6f434c/monotone-no-botan-openssl-19.09

    monotone: openssl in botan is not needed, so drop to avoid old openssl
    7c6f434c committed Apr 29, 2020
    Copy the full SHA
    511766d View commit details
    Browse the repository at this point in the history