2
0
Эх сурвалжийг харах

Refs #32718 -- Corrected CVE-2021-31542 release notes.

Mariusz Felisiak 3 жил өмнө
parent
commit
d1f1417cae

+ 1 - 2
docs/releases/2.2.21.txt

@@ -13,5 +13,4 @@ CVE-2021-31542: Potential directory-traversal via uploaded files
 directory-traversal via uploaded files with suitably crafted file names.
 
 In order to mitigate this risk, stricter basename and path sanitation is now
-applied. Specifically, empty file names and paths with dot segments will be
-rejected.
+applied.

+ 1 - 2
docs/releases/3.1.9.txt

@@ -13,5 +13,4 @@ CVE-2021-31542: Potential directory-traversal via uploaded files
 directory-traversal via uploaded files with suitably crafted file names.
 
 In order to mitigate this risk, stricter basename and path sanitation is now
-applied. Specifically, empty file names and paths with dot segments will be
-rejected.
+applied.

+ 1 - 2
docs/releases/3.2.1.txt

@@ -13,8 +13,7 @@ CVE-2021-31542: Potential directory-traversal via uploaded files
 directory-traversal via uploaded files with suitably crafted file names.
 
 In order to mitigate this risk, stricter basename and path sanitation is now
-applied. Specifically, empty file names and paths with dot segments will be
-rejected.
+applied.
 
 Bugfixes
 ========