1
0
Fork 0
mirror of https://github.com/puma/puma.git synced 2022-11-09 13:48:40 -05:00

Update History.md

formatting + reflect the yank
add the new second CVE
This commit is contained in:
Nate Berkopec 2020-03-03 21:08:02 -06:00 committed by GitHub
parent 964747031f
commit 317c1cf639
No known key found for this signature in database
GPG key ID: 4AEE18F83AFDEB23

View file

@ -26,12 +26,13 @@
## 4.3.3 and 3.12.4 / 2020-02-28
* Bugfixes
* Fix: Fixes a problem where we weren't splitting headers correctly on newlines (#2132)
* Security
* Fix: Prevent HTTP Response splitting via CR in early hints.
## 4.3.2 and 3.12.3 / 2020-02-27
* Bugfixes
* Fix: Fixes a problem where we weren't splitting headers correctly on newlines (#2132)
* Security
* Fix: Prevent HTTP Response splitting via CR in early hints. CVE-2020-5249.
## 4.3.2 and 3.12.3 / 2020-02-27 (YANKED)
* Security
* Fix: Prevent HTTP Response splitting via CR/LF in header values. CVE-2020-5247.