advisory-database icon indicating copy to clipboard operation
advisory-database copied to clipboard

[GHSA-qxp4-27vx-xmm3] Improper Input Validation in Jetty

Open MarkLee131 opened this issue 1 year ago • 1 comments

Updates

  • References

Comments Add a patch https://github.com/eclipse/jetty.project/commit/d0b81a185c260ffceecb9d7470b3ddfbfeda4c11, of which the commit message claims 367638: 361316: protected multipart filter from DoS

MarkLee131 avatar Mar 03 '24 15:03 MarkLee131

Hey @MarkLee131, I think the fix commit for this advisory might actually be https://github.com/jetty/jetty.project/commit/085c79d7d6cfbccc02821ffdb64968593df3e0bf Can you elaborate on your thinking here?

darakian avatar Mar 05 '24 19:03 darakian

👋 This pull request has been marked as stale because it has been open with no activity. You can: comment on the issue or remove the stale label to hold stale off for a while, add the Keep label to hold stale off permanently, or do nothing. If you do nothing this pull request will be closed eventually by the stale bot. Please see CONTRIBUTING.md for more policy details.

taladrane avatar Mar 21 '24 00:03 taladrane