Package: libcommons-fileupload-java / 1.2.2-1+deb7u2

Metadata

Package Version Patches format
libcommons-fileupload-java 1.2.2-1+deb7u2 3.0 (quilt)

Patch series

view the series file
Patch File delta Description
CVE 2013 2186.patch | (download)

src/java/org/apache/commons/fileupload/disk/DiskFileItem.java | 20 20 + 0 - 0 !
1 file changed, 20 insertions(+)

 fix arbitrary file overwrite via poison null byte
CVE 2014 0050.patch | (download)

src/java/org/apache/commons/fileupload/FileUploadBase.java | 12 10 + 2 - 0 !
src/java/org/apache/commons/fileupload/MultipartStream.java | 5 4 + 1 - 0 !
src/test/org/apache/commons/fileupload/MultipartStreamTest.java | 22 21 + 1 - 0 !
3 files changed, 35 insertions(+), 4 deletions(-)

 fixes an infinite loop caused by invalid mime boundaries
remove unused test classes.patch | (download)

src/test/org/apache/commons/fileupload/MockPortletRequest.java | 316 0 + 316 - 0 !
src/test/org/apache/commons/fileupload/MockPortletSession.java | 171 0 + 171 - 0 !
2 files changed, 487 deletions(-)

 removes unused test classes that prevent the tests from compiling