Package: modsecurity-crs / 3.3.0-1+deb11u1

Metadata

Package Version Patches format
modsecurity-crs 3.3.0-1+deb11u1 3.0 (quilt)

Patch series

view the series file
Patch File delta Description
fix_paths | (download)

util/regexp-assemble/regexp-assemble-v2.pl | 2 1 + 1 - 0 !
util/regexp-assemble/regexp-assemble.pl | 2 1 + 1 - 0 !
util/virtual-patching/arachni2modsec.pl | 2 1 + 1 - 0 !
util/virtual-patching/zap2modsec.pl | 2 1 + 1 - 0 !
4 files changed, 4 insertions(+), 4 deletions(-)

---
CVE 2021 35368.patch | (download)

rules/REQUEST-903.9001-DRUPAL-EXCLUSION-RULES.conf | 112 63 + 49 - 0 !
1 file changed, 63 insertions(+), 49 deletions(-)

 [patch] fix cve-2021-35368 waf bypass using pathinfo (christian folini)