struts-commits mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From lukaszlen...@apache.org
Subject [10/13] struts-extras git commit: Adds constructor with proper log information about resolves vulnerabilities
Date Mon, 20 Mar 2017 07:05:25 GMT
Adds constructor with proper log information about resolves vulnerabilities


Project: http://git-wip-us.apache.org/repos/asf/struts-extras/repo
Commit: http://git-wip-us.apache.org/repos/asf/struts-extras/commit/9eafdc5f
Tree: http://git-wip-us.apache.org/repos/asf/struts-extras/tree/9eafdc5f
Diff: http://git-wip-us.apache.org/repos/asf/struts-extras/diff/9eafdc5f

Branch: refs/heads/master
Commit: 9eafdc5fd6810d8b2387c0b9c0cf42d0ca735d0f
Parents: ef4bd11
Author: Lukasz Lenart <lukasz.lenart@gmail.com>
Authored: Mon Mar 20 07:42:15 2017 +0100
Committer: Lukasz Lenart <lukasz.lenart@gmail.com>
Committed: Mon Mar 20 07:42:15 2017 +0100

----------------------------------------------------------------------
 .../struts/extras/SecureJakartaStreamMultiPartRequest.java      | 5 +++++
 1 file changed, 5 insertions(+)
----------------------------------------------------------------------


http://git-wip-us.apache.org/repos/asf/struts-extras/blob/9eafdc5f/struts2-secure-jakarta-stream-multipart-parser-plugin/src/main/java/org/apache/struts/extras/SecureJakartaStreamMultiPartRequest.java
----------------------------------------------------------------------
diff --git a/struts2-secure-jakarta-stream-multipart-parser-plugin/src/main/java/org/apache/struts/extras/SecureJakartaStreamMultiPartRequest.java
b/struts2-secure-jakarta-stream-multipart-parser-plugin/src/main/java/org/apache/struts/extras/SecureJakartaStreamMultiPartRequest.java
index 3acc55d..cbc06f9 100644
--- a/struts2-secure-jakarta-stream-multipart-parser-plugin/src/main/java/org/apache/struts/extras/SecureJakartaStreamMultiPartRequest.java
+++ b/struts2-secure-jakarta-stream-multipart-parser-plugin/src/main/java/org/apache/struts/extras/SecureJakartaStreamMultiPartRequest.java
@@ -91,6 +91,11 @@ public class SecureJakartaStreamMultiPartRequest implements MultiPartRequest
{
      */
     private Locale defaultLocale = Locale.ENGLISH;
 
+    public SecureJakartaStreamMultiPartRequest() {
+        LOG.info("This is a secure implementation of the Struts Jakarta Stream Multipart
parser, " +
+                "this implementation is safe against vulnerability described in the S2-045/S2-046
Security Bulletins.");
+    }
+
     /**
      * Injects the Struts multiple part maximum size.
      *


Mime
View raw message