From 51285f2f135c7f1c113dee327466734871068885 Mon Sep 17 00:00:00 2001 From: Shivani Bhardwaj Date: Tue, 19 Mar 2024 15:43:17 +0530 Subject: [PATCH] release: 6.0.17; update changelog --- ChangeLog | 10 ++++++++++ configure.ac | 6 +++--- requirements.txt | 4 ++-- 3 files changed, 15 insertions(+), 5 deletions(-) diff --git a/ChangeLog b/ChangeLog index 83282e3da18b..86f245f8dc6f 100644 --- a/ChangeLog +++ b/ChangeLog @@ -1,3 +1,13 @@ +6.0.17 -- 2024-03-19 + +Security #6867: eve: excessive ssh long banner logging (6.0.x backport)(CVE 2024-28870) +Security #6800: ssh: quadratic complexity in overlong banner (6.0.x backport)(CVE 2024-28870) +Security #6758: libhtp: quadratic complexity checking after request line mission protocol (6.0.x backport)(CVE 2024-28871) +Bug #6783: util/mime: Memory leak at util-decode-mime.c:MimeDecInitParser (6.0.x backport) +Bug #6767: multi-tenancy: dead lock during tenant loading (6.0.x backport) +Bug #6530: drop: assertion failed !(PKT_IS_PSEUDOPKT(p)) && !PacketCheckAction(p, ACTION_DROP) (6.0.x backport) +Task #6869: libhtp 0.5.47 (6.0.x backport) + 6.0.16 -- 2024-02-08 Security #6751: http2: evasion by splitting header fields over frames (6.0.x backport) diff --git a/configure.ac b/configure.ac index e40529dd6353..62112fbeb9ff 100644 --- a/configure.ac +++ b/configure.ac @@ -1,4 +1,4 @@ - AC_INIT([suricata],[6.0.17-dev]) + AC_INIT([suricata],[6.0.17]) m4_ifndef([AM_SILENT_RULES], [m4_define([AM_SILENT_RULES],[])])AM_SILENT_RULES([yes]) AC_CONFIG_HEADERS([src/autoconf.h]) AC_CONFIG_SRCDIR([src/suricata.c]) @@ -1671,12 +1671,12 @@ echo exit 1 fi - PKG_CHECK_MODULES(LIBHTPMINVERSION, [htp >= 0.5.46],[libhtp_minver_found="yes"],[libhtp_minver_found="no"]) + PKG_CHECK_MODULES(LIBHTPMINVERSION, [htp >= 0.5.47],[libhtp_minver_found="yes"],[libhtp_minver_found="no"]) if test "$libhtp_minver_found" = "no"; then PKG_CHECK_MODULES(LIBHTPDEVVERSION, [htp = 0.5.X],[libhtp_devver_found="yes"],[libhtp_devver_found="no"]) if test "$libhtp_devver_found" = "no"; then echo - echo " ERROR! libhtp was found but it is neither >= 0.5.46, nor the dev 0.5.X" + echo " ERROR! libhtp was found but it is neither >= 0.5.47, nor the dev 0.5.X" echo exit 1 fi diff --git a/requirements.txt b/requirements.txt index fb8ed81bfdd8..e42c9e07814f 100644 --- a/requirements.txt +++ b/requirements.txt @@ -3,5 +3,5 @@ # Format: # # name {repo} {branch|tag} -libhtp https://github.com/OISF/libhtp 0.5.x -suricata-update https://github.com/OISF/suricata-update master-1.2.x +libhtp https://github.com/OISF/libhtp 0.5.47 +suricata-update https://github.com/OISF/suricata-update 1.2.8