From 6859159289d433b57ae15c4e943114f90befdf6e Mon Sep 17 00:00:00 2001 From: Piotr Sikora Date: Mon, 8 Jun 2020 08:24:50 -0700 Subject: [PATCH] docs: add 1.12.4, 1.13.2 and 1.14.2 release notes. (#11495) Signed-off-by: Piotr Sikora --- docs/root/version_history/v1.12.4.rst | 8 ++++++++ docs/root/version_history/v1.13.2.rst | 8 ++++++++ docs/root/version_history/v1.14.2.rst | 7 +++++++ docs/root/version_history/version_history.rst | 3 +++ 4 files changed, 26 insertions(+) create mode 100644 docs/root/version_history/v1.12.4.rst create mode 100644 docs/root/version_history/v1.13.2.rst create mode 100644 docs/root/version_history/v1.14.2.rst diff --git a/docs/root/version_history/v1.12.4.rst b/docs/root/version_history/v1.12.4.rst new file mode 100644 index 000000000000..1635bbb5f000 --- /dev/null +++ b/docs/root/version_history/v1.12.4.rst @@ -0,0 +1,8 @@ +1.12.4 (June 8, 2020) +===================== + +Changes +------- + +* http: added :ref:`headers_with_underscores_action setting ` to control how client requests with header names containing underscore characters are handled. The options are to allow such headers, reject request or drop headers. The default is to allow headers, preserving existing behavior. +* http: fixed CVE-2020-11080 by rejecting HTTP/2 SETTINGS frames with too many parameters. diff --git a/docs/root/version_history/v1.13.2.rst b/docs/root/version_history/v1.13.2.rst new file mode 100644 index 000000000000..641bbaa451d4 --- /dev/null +++ b/docs/root/version_history/v1.13.2.rst @@ -0,0 +1,8 @@ +1.13.2 (June 8, 2020) +===================== + +Changes +------- + +* http: added :ref:`headers_with_underscores_action setting ` to control how client requests with header names containing underscore characters are handled. The options are to allow such headers, reject request or drop headers. The default is to allow headers, preserving existing behavior. +* http: fixed CVE-2020-11080 by rejecting HTTP/2 SETTINGS frames with too many parameters. diff --git a/docs/root/version_history/v1.14.2.rst b/docs/root/version_history/v1.14.2.rst new file mode 100644 index 000000000000..18bdf0bfce9d --- /dev/null +++ b/docs/root/version_history/v1.14.2.rst @@ -0,0 +1,7 @@ +1.14.2 (June 8, 2020) +===================== + +Changes +------- + +* http: fixed CVE-2020-11080 by rejecting HTTP/2 SETTINGS frames with too many parameters. diff --git a/docs/root/version_history/version_history.rst b/docs/root/version_history/version_history.rst index 6451336bffe7..527dec86ca8d 100644 --- a/docs/root/version_history/version_history.rst +++ b/docs/root/version_history/version_history.rst @@ -7,10 +7,13 @@ Version history :titlesonly: current + v1.14.2 v1.14.1 v1.14.0 + v1.13.2 v1.13.1 v1.13.0 + v1.12.4 v1.12.3 v1.12.2 v1.12.1