Yes as it addresses a number of vulnerabilities discovered. Check mailing list for CVE messages sent earlier today.
Kind RegardsMitchell Krog************************************************** Visit me at https://mitchellkrog.com************************************************** ************************************************** On 20 June 2017 at 17:41:22, Andrei Ivanov (andrei.ivanov@xxxxxxxxx) wrote:
Hi,Seeing that 2.4.26 was released, is this a good time? 😀Thanks again.On Sun, May 28, 2017 at 11:54 PM, Yann Ylavic <ylavic.dev@xxxxxxxxx> wrote:
Hi Andrei,
On Wed, May 24, 2017 at 5:50 PM, Andrei Ivanov <andrei.ivanov@xxxxxxxxx> wrote:
>
> Does anybody know anything about Yann?
I do :)
Sorry I didn't have the time to propose something to the dev team for
now, while 2.4.26 is coming soon and is very unlikely to include such
a change on the core _expression_ parser (without quite some testing and
review, we can't regress here...).
Once 2.4.26 is out, I'll propose/commit the patch so that we can
discuss and hopefuly backport it to some future 2.4.x.
Regards,
Yann.
------------------------------------------------------------ ---------
To unsubscribe, e-mail: users-unsubscribe@httpd.apache.org
For additional commands, e-mail: users-help@xxxxxxxxxxxxxxxx