[mod-security-packagers] Announcing ModSecurity release v2.9.7
Brought to you by:
victorhora,
zimmerletw
From: Martin V. <Mar...@tr...> - 2023-01-05 15:12:57
|
ModSecurity is pleased to announce the release of version 2.9.7. This version includes a mixture of new features and bug fixes. The official release announcement can be found at https://www.trustwave.com/en-us/resources/security-resources/software-updates/announcing-modsecurity-version-297/ . Security impacting issues - Fix: FILES_TMP_CONTENT may sometimes lack complete content [Issue #2857 - gieltje, @airween, @dune73, @martinhsv] New features - Support configurable limit on number of arguments processed [Issue #2844 - @jleproust, @martinhsv] - Support for PCRE2 [Issue #2840, #2833, #2737, #2827 - @martinhsv] Bug fixes and enhancements - Silence compiler warning about discarded const [Issue #2843 - @Steve8291, @martinhsv] - Use uid for user if apr_uid_name_get() fails [Issue #2046 - @arminabf, @marcstern] - Fix: handle error with SecConnReadStateLimit configuration [Issue #2815, #2834 - @marcstern, @martinhsv]] - Adjustment of previous fix for log messages [Issue #2832 - @marcstern, @erkia] - Mark apache error log messages as from mod_security2 [Issue #2781 - @erkia] - Use pkg-config to find libxml2 first [Issue #2818 - @hughmcmaster] Additional information on the release, including the source and binaries (and hashes/signatures) is available at: https://github.com/SpiderLabs/ModSecurity/releases/tag/v2.9.7 . Thanks to everybody who helped in this process: reporting issues, making comments and suggestions, sending patches, etc. Martin Vierula Senior Security Researcher - ModSecurity [cid:image001.png@01D920EC.2181B6A0] www.trustwave.com<http://www.trustwave.com/> Recognized by industry analysts as a leader in threat detection and response.<https://www.trustwave.com/company/about-us/accolades/> This transmission may contain information that is privileged, confidential, and/or exempt from disclosure under applicable law. If you are not the intended recipient, you are hereby notified that any disclosure, copying, distribution, or use of the information contained herein (including any reliance thereon) is STRICTLY PROHIBITED. If you received this transmission in error, please immediately contact the sender and destroy the material in its entirety, whether in electronic or hard copy format. |