[
https://issues.apache.org/jira/browse/FILEUPLOAD-279?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel
]
Rob Tompkins updated FILEUPLOAD-279:
Fix Version/s: 1.3.3
> CVE-2016-131 - Apache Commons FileUpload DiskFileItem File
[
https://issues.apache.org/jira/browse/FILEUPLOAD-279?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel
]
Chris Seieroe updated FILEUPLOAD-279:
-
Attachment: fix2.patch
I reapplied the fixes on a clean copy, and the patch looks a
[
https://issues.apache.org/jira/browse/FILEUPLOAD-279?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel
]
Chris Seieroe updated FILEUPLOAD-279:
-
Attachment: (was:
[
https://issues.apache.org/jira/browse/FILEUPLOAD-279?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel
]
Chris Seieroe updated FILEUPLOAD-279:
-
Attachment: 0001-Fix-CVE-2016-131-by-making-DiskFileItem-not-Seri.patch
First
[
https://issues.apache.org/jira/browse/FILEUPLOAD-279?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel
]
Michiel Weggen updated FILEUPLOAD-279:
--
Description:
http://www.tenable.com/security/research/tra-2016-12
Summary
There