[Buildroot] [PATCH 1/1] package/libmodsecurity: security bump to version 3.0.10

Peter Korsgaard peter at korsgaard.com
Wed Sep 13 15:57:12 UTC 2023


>>>>> "Frank" == Frank Vanbever via buildroot <buildroot at buildroot.org> writes:

 > - Fixes CVE-2023-38285 [1]
 > - Adapted 0001-configure.ac-drop-usage-of-git-at-configure-time.patch due to
 >   upstream moving to autoconf portable shell constructs.
 > - Added missing Upstream comments

 > Signed-off-by: Frank Vanbever <frank.vanbever at mind.be>

 > [1] https://www.trustwave.com/en-us/resources/blogs/spiderlabs-blog/modsecurity-v3-dos-vulnerability-in-four-transformations-cve-2023-38285/

 > Signed-off-by: Frank Vanbever <frank.vanbever at mind.be>

Committed to 2023.02.x and 2023.05.x, thanks.

-- 
Bye, Peter Korsgaard



More information about the buildroot mailing list