Skip to content

Conversation

@andrewaustin
Copy link

Port of 734f9d1 to 3.5.x to fix CVE-2020-36048

This change reduces the default value from 100 mb to a more sane 1 mb.

This helps protect the server against denial of service attacks by
malicious clients sending huge amounts of data.
@andrewaustin
Copy link
Author

Related Issue: #612

@darrachequesne
Copy link
Member

Please see my comment here: #612 (comment)

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants