mirror of
https://github.com/curl/curl.git
synced 2026-08-25 22:03:47 +03:00
7.15.0 time
This commit is contained in:
parent
943aea6267
commit
96cec4dfd7
2 changed files with 18 additions and 1 deletions
16
CHANGES
16
CHANGES
|
|
@ -8,6 +8,22 @@
|
|||
|
||||
|
||||
|
||||
Version 7.15.0 (13 October 2005)
|
||||
|
||||
Daniel (12 October 2005)
|
||||
- Michael Sutton of iDEFENSE reported and I fixed a securitfy flaw in the NTLM
|
||||
code that would overflow a buffer if given a too long user name or domain
|
||||
name. This would happen if you enable NTLM authentication and either
|
||||
|
||||
A - pass in a user name and domain name to libcurl that together are longer
|
||||
than 192 bytes
|
||||
|
||||
B - allow (lib)curl to follow HTTP "redirects" (Location: and the
|
||||
appropriate HTTP 30x response code) and the new URL contains a URL with
|
||||
a user name and domain name that together are longer than 192 bytes
|
||||
|
||||
See http://curl.haxx.se/docs/security.html for further details and updates
|
||||
|
||||
Daniel (5 October 2005)
|
||||
- Darryl House reported a problem with using -z to download files from FTP.
|
||||
It turned out that if the given time stamp was exact the same as the remote
|
||||
|
|
|
|||
Loading…
Add table
Add a link
Reference in a new issue