[Owasp-modsecurity-core-rule-set] CRS v2.0.6 Released - Bug Fixes

Ryan Barnett rcbarnett at gmail.com
Mon Mar 8 12:11:25 EST 2010


http://www.owasp.org/index.php/Category:OWASP_ModSecurity_Core_Rule_Set_Project#tab=Download

--------------------------
Version 2.0.6 - 02/26/2100
--------------------------

Bug Fixes:
- Added missing trasformation functions to SQLi rules.
  https://www.modsecurity.org/tracker/browse/CORERULES-32
- Fixed duplicate rule IDs.
  https://www.modsecurity.org/tracker/browse/CORERULES-33
- Fixed typo in @pmFromFile in the Comment SPAM rules
  https://www.modsecurity.org/tracker/browse/CORERULES-34
- Added macro expansion to Restricted Headers rule
  https://www.modsecurity.org/tracker/browse/CORERULES-35
- Fixed misspelled SecMarker
  https://www.modsecurity.org/tracker/browse/CORERULES-36
- Fixed missing chain action in Content-Type header check
  https://www.modsecurity.org/tracker/browse/CORERULES-37
- Update phpids filters to use pass action instead of block

--
Ryan C. Barnett
WASC Distributed Open Proxy Honeypot Project Leader
OWASP ModSecurity Core Rule Set Project Leader
Tactical Web Application Security
http://tacticalwebappsec.blogspot.com


More information about the Owasp-modsecurity-core-rule-set mailing list