diff options
author | Yusuke Endoh <mame@ruby-lang.org> | 2021-07-07 11:57:15 +0900 |
---|---|---|
committer | nagachika <nagachika@ruby-lang.org> | 2021-07-07 19:05:36 +0900 |
commit | bf4d05173c7cf04d8892e4b64508ecf7902717cd (patch) | |
tree | 98156d7753fbef68455301086e6f95149b2a74b6 /lib/net/http/exceptions.rb | |
parent | 1545d4f9050d7223cdfb2cf5fca170d5828512a5 (diff) |
Ignore IP addresses in PASV responses by default, and add new option use_pasv_ip
This fixes CVE-2021-31810.
Reported by Alexandr Savca.
Co-authored-by: Shugo Maeda <shugo@ruby-lang.org>
Diffstat (limited to 'lib/net/http/exceptions.rb')
0 files changed, 0 insertions, 0 deletions