Fix CVE-2017-1000117, arbitrary code execution issues via URLs
commit4a30de5bec6434bea9da2d62c1564bf335b68ed1
authorJonathan Nieder <jrnieder@gmail.com>
Wed, 9 Aug 2017 06:49:25 +0000 (8 23:49 -0700)
committerJonathan Nieder <jrnieder@gmail.com>
Wed, 9 Aug 2017 06:49:25 +0000 (8 23:49 -0700)
treec39543dd5a58f989db428df4ceb512390ccf2cde
parent68787cc3e70a73da847c16e6d4d9f0ad7833dd55
Fix CVE-2017-1000117, arbitrary code execution issues via URLs

Apply the changes v2.11.2..v2.11.3 from upstream.

Signed-off-by: Jonathan Nieder <jrnieder@gmail.com>
debian/changelog
debian/patches/connect-factor-out-looks-like-command-line-option-che.diff [new file with mode: 0644]
debian/patches/connect-reject-dashed-arguments-for-proxy-commands.diff [new file with mode: 0644]
debian/patches/connect-reject-paths-that-look-like-command-line-opti.diff [new file with mode: 0644]
debian/patches/connect-reject-ssh-hostname-that-begins-with-a-dash.diff [new file with mode: 0644]
debian/patches/series
debian/patches/t5813-add-test-for-hostname-starting-with-dash.diff [new file with mode: 0644]