jetty-websocket-common-9.4.58-150200.3.34.1<>,Ath2p9|ywkOz+-M 5X@D2an햚gԁ=XPJ%sٹ=8Q:dx1V)S".+lu@l /3Il"Œr)M L_:Q/nhxGLCU&Vv\4ޛ~u%VDbbߘY@㸈[rm3(=#"t>>$?$d  . T -3<P Z d x = DXqx   (89$:eF 7G LH `I tX |Y \ ] ^!;b!c"[d"e"f"l"u#v#$w#x#y$z$($8$<$B$Cjetty-websocket-common9.4.58150200.3.34.1The websocket-common module for Jetty%{extdesc} The websocket-common module for Jetty.h2h03-ch2c7SUSE Linux Enterprise 15SUSE LLC Apache-2.0 OR EPL-1.0https://www.suse.com/Unspecifiedhttps://www.eclipse.org/jetty/linuxnoarchx A큤A큤h2h2h2h2h2a8467d0d6eec9b4f7aa4c236bd14f6e3810cddbdcdca1ba8d564116319f6d45b371f3e07e4c6bbb9cbf1e8d059ce7c911010a771aec84b0d16de09a0eeeb622b34f914e99eeba9ee6ef780a72f91321748ed52f8836e0e4736c8d5c05f151120rootrootrootrootrootrootrootrootrootrootjetty-websocket-9.4.58-150200.3.34.1.src.rpmjetty-websocket-commonmvn(org.eclipse.jetty.websocket:websocket-common)mvn(org.eclipse.jetty.websocket:websocket-common:pom:)osgi(org.eclipse.jetty.websocket.common)@ @@@@    java-headlessjavapackages-filesystemmvn(org.eclipse.jetty.websocket:websocket-api)mvn(org.eclipse.jetty:jetty-io)mvn(org.eclipse.jetty:jetty-util)rpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rpmlib(PayloadIsXz)1.89.4.58.v202508143.0.4-14.6.0-14.0-15.2-14.14.1h[h4WgY@ee'd^@djb@bBb9@an@`i@`@`f@`KW_@_^@^]߶]Xfstrba@suse.comfstrba@suse.comfstrba@suse.comfstrba@suse.comfstrba@suse.comfstrba@suse.comfstrba@suse.comfstrba@suse.comfstrba@suse.comfstrba@suse.comfstrba@suse.comfstrba@suse.comfstrba@suse.comrpm@fthiessen.defstrba@suse.comfstrba@suse.comfstrba@suse.comfstrba@suse.comfstrba@suse.comfstrba@suse.com- Upgrade to version 9.4.58.v20250814 * Changes + #13461 - 9.4.x HTTP2Session cleanups - Addresses CVE-2025-5115, bsc#1244252 + #13261 - Improve handling of failed HTTP/2 requests + #461 - Move ServletTester to the test source directory- Upgrade to version 9.4.57.v20241219 * Security fixes: + CVE-2024-6763, bsc#1231652: the HttpURI class does insufficient validation on the authority segment of a URI + CVE-2024-13009, bsc#1243271: Gzip Request Body Buffer Corruption * Changes: + #12268 - IteratingCallback may iterate too much when process() returns Action.IDLE + #12648 - Backport improved handling of bad Gzip content (and Gzip Exceptions) + #12532 - Backport of deprecation of UserInfo on URI (in violation of RFC2616 spec)- Upgrade to version 9.4.56.v20240826 * Security fixes: + CVE-2024-8184, bsc#1231651, ThreadLimitHandler.getRemote() vulnerable to remote DoS attacks * Changes: + #12201 backport ThreadLimitHandler improvements from Jetty 12 + #11938 - Updating URL refs from eclipse.org/jetty and eclipse.dev/jetty to jetty.org (including XML dtd references) + #10805 - Jetty response with an invalid HTTP2 packet if the client set the hpack table size as 0- Upgrade to version 9.4.54.v20240208 * Security fixes + CVE-2024-22201, bsc#1220437: HTTP/2 connection not closed after idle timeout when TCP congested * Other changes + #1256 DoSFilter leaks USER_AUTH entries + #11389 Strip default ports on ws/wss scheme uris too- Upgrade to version 9.4.53.v20231009 * Fixes of 9.4.53.v20231009 + CVE-2023-44487, bsc#1216169 + CVE-2023-36478, bsc#1216162 + #10679 - backport HTTP/2 rate control from Jetty 10.0.x + #10573 - backport hpack improvements from Jetty 10.0.x + #10546 - backport jetty-http Huffman encoders/decoders from Jetty 10.0.x * Fixes of 9.4.52.v20230823 + #10352 - Jetty accepts "+" prefixed value in Content-Length (CVE-2023-40167, bsc#1215417) + #10337 - SizeLimitHandler does not enforce 0 responseLimit + #10169 - make sure that a ServiceLoader is retrieved before iterating + #10066 - Allow SAXParserFactory or SAXParser to be configured in Jetty's XmlParser class - Allows for GHSA-58qw-p7qm-5rvh workaround + #9887 - Deprecate CGI Servlet (CVE-2023-36479, bsc#1215415) + #9716 - Deprecate PushSessionCacheFilter + #9660 - OpenId Revoked authentication allows one request (CVE-2023-41900, bsc#1215416) + #9476 - onCompleteFailure called multiple times- Reproducible builds: use SOURCE_DATE_EPOCH for timestamp- Update to version 9.4.51.v20230217 * Fixes of 9.4.49.v20220914: + #8578 - getRequestURL can append "null" if getRequestURI is unspecified in an authority-form request-target + #8493 - Review HTTP client feature setRemoveIdleDestinations * Fixes of 9.4.50.v20221201: + #8774 - Added SizeLimitHandler + #8678 - Jetty client is not responding to GO_AWAY packet received from (Jetty) Server and continue to send traffic on same connection * Fixes of 9.4.51.v20230217: + #9352 - Update / Fix CookieCutter + #9345 - Backport Multipart Fix for CVE-2023-26048, bsc#1210620 + #9352 - Backport Cookie Parsing Fix for CVE-2023-26049, bsc#1210621- Upgrade to version 9.4.48.v20220622 * Fixes + #8184 - All suffix globs except first fail to match if path has "." character in prefix section + #8145 - RegexPathSpec backport of optional group name/info lookup if regex fails + #8088 - Add option to configure exitVm on ShutdownMonitor from System properties + #8067 - Wall time usage in DoSFilter RateTracker results in false positive alert + #8014 - Review HttpRequest URI construction (Resolves CVE-2022-2047, bsc#1201317) + #7976 - Add TRANSFER_ENCODING violation for MultiPart RFC7578 parser + #7947 - Improved PathSpec handling for servletName & pathInfo + #7935 - Review HTTP/2 error handling (Resolves CVE-2022-2048, bsc#1201316) + #7918 - PathMappings.asPathSpec does not allow root ServletPathSpec + #7863 - Default servlet drops first accept-encoding header if there is more than one. + #7858 - GZipHandler does not play nice with other handlers in HandlerCollection + #7837 - Fix StatisticsHandler in the case a Handler throws exception + #7809 - Jetty 9.4.x 7801 duplicate set session cookies + #7748 - Allow overriding of url-pattern mapping in ServletContextHandler to allow for regex or uri-template matching- Upgrade to version 9.4.46.v20220328 * Changes + Option --write-module-graph produces wrong .dot file + ArrayTrie getBest fails to match the empty string entry in certain cases + Interrupt flag is not always cleared in between requests + Gzip compression not working for multipart/form-data when added to the allowed list using addIncludedMimeTypes. + Miconfigured headerCacheSize in can result in IllegalArgumentException + HttpServletResponse.encodeURL not working for URLs starting with ../- Build with java source and target levels 8 - Fix javadoc generation on JDK >= 13- Make importing of package sun.misc optional since not all jdk versions export it- Update to version 9.4.43.v20210629 * Fix: bsc#1188438, CVE-2021-34429 * Changes: + Improve alias checking in PathResource + java.nio.ReadOnlyBufferException + Deprecate support for UTF16 encoding in URIs + Update to spifly 1.3.3 + Update to asm 9.1- Update to version 9.4.42.v20210604 * Fix: bsc#1187117, CVE-2021-28169- Update to version 9.4.40.v20210413 * Fix: bsc#1184367, CVE-2021-28165 - jetty server high CPU when client send data length > 17408 * Fix: bsc#1184368, CVE-2021-28164 - Normalize ambiguous URIs * Fix: bsc#1184366, CVE-2021-28163 - Exclude webapps directory from deployment scan * Improve handling of unconsumed content * Jetty start.jar always reports jetty.tag.version as master * HttpConnection.getBytesIn() incorrect for requests with chunked content * SslConnection compacting- Upgrade to upstream version 9.4.38.v20210224 * Fixes bsc#1182898, CVE-2020-27223- Upgrade to upstream version 9.4.35.v20201120 * Fixes bsc#1179727, CVE-2020-27218- Upgrade to upstream version 9.4.30.v20200611- Upgrade to upstream version 9.4.27.v20200227- Removed patch: * jetty-annotations-asm6.patch + not needed when building against ASM7- Initial packaging of the websocket submodules of jetty 9.4.22.v20191022h03-ch2c 17558534689.4.58-150200.3.34.19.4.58.v202508149.4.58.v202508149.4.58jettywebsocket-common.jarjetty-websocket-websocket-common.xmljettywebsocket-common.pom/usr/share/java//usr/share/java/jetty//usr/share/maven-metadata//usr/share/maven-poms//usr/share/maven-poms/jetty/-fmessage-length=0 -grecord-gcc-switches -O2 -Wall -D_FORTIFY_SOURCE=2 -fstack-protector-strong -funwind-tables -fasynchronous-unwind-tables -fstack-clash-protection -gobs://build.suse.de/SUSE:Maintenance:40321/SUSE_SLE-15-SP2_Update/2b6f776051d47a6a662028da496a49ba-jetty-minimal.SUSE_SLE-15-SP2_Update:jetty-websocketdrpmxz5noarch-suse-linuxdirectoryASCII text, with CRLF line terminators (Zip archive data, at least v2.0 to extract Zip archive data, at least v2.0 to extract)XML 1.0 document, ASCII textXML 1.0 document textPPPRRRRR1ߞ_4p utf-802f1db5463dee69703ed2bf2f40c236dca8fc53523495642348292b8604a08db? 7zXZ !t//$]"k%lJYyNF?5BD K~S1%gp6E<2 "puKJ) KƮU~oemq7}2&m`\dחKFLDNܰsrmm׭`_`䀫 ~V2ٮ2mdz5tz8`}F?#B9foj)ʄvE0#)fFbt͒Z#RԧōzcX8^LLկb'|m]7^6qr+惆F)'4g9iْճ_F*1&/QnKQI>Vۚ(ƠrϮ8km?Okg VbAYb~p[soJT1ִؑ|̼j&!@KS`3(` h܍t/wךޗ( ɦRP. .LAҖ 8_f;CN\lڎ_ R^iJUJQJ>wmEZ6Uoh1J ~s1O앗NUR <*῅_J(Fn0CR'UDS+m)]ZLm:,dkЄ:8\>|Bl"aY7CV0 tHVqޙ0i'gYHH5mH]N d准V>eRrC7ɋAuR/xc kr٦H_;Ntzp*r= Sk._f=aH@\}+ Ֆ!Y69adL ]d<)'iT6癋[jK%DZOnԜ*TDItePdzSKE/n$@1HK04 iEw4bGyDzr M;bRW,G^ Uz|g  A[x[cY[s pr:zuwZj$Kbo"?6S5 ڔ2q__dwZޖ52) T['d .2X߰.KVSC̱yuoG!c9͂gj>CpG}G&iX"󫼉չ| >]=(vOøn,pJHVx2#4T葃&rr0ض px I3 OZ|Fzn835 ﵛڕT4(ȩƪ ꧾE# ]ƿ2a=(=Q}}5̓EGx!$ql 5a`#l[S"nD0%({t!_teԔ^"'\QIZ{h]#%m,GiZq͹Mc5űTZY7spzecex(^ zo3d=gns=imyrYB`WJfpը.<Ө Yە"iM5 /i817ڔ*7'F%V/]$zzhpeIENʪ^?7D(>4eF|hpvdNs/3 :$IC2* >7e]9Fq;I*#?ԝf[_@U./u 1KKjY˱|^0>*9 kZ`<x xhpM\8L8].gbM$ n='6g)9wW}mK8l/}E| #+po6[Sv:TBžc,, 7O-/MeB J%L JǗwZW(, uκ?qER$WHIiF9j~HrO3c.pq w-Y4jV6kd׋"jR%@줖֧dd5ks9v/Mv,"!(d*Hi_^ 7Z'KNFzN[CSIbˬ ;VDpwk5_Z/l.>QI8& g1wt+ȕ+@t !%=Wl;Iܗif웟/C RRd4Ga.0YbQr#vU .I|ѓmgcf TT4zx VXk;A }/+Dyvcr͎~Q <+e6kZcw8qR0@KAtQc%M,n-ɛ}Ң(Y=E2@bJ̲]EWLDR:Dor#C^;~11jhI:<sC;b"6} *㧽O/HxشK.r.(bE`91h F(d?ƌltNy%6>!)!TzJDn=w7^C&AJ뎲a4²9ObzҦM$ \4snTXh:b8GLjjύO}"hޜwvk a[]އ0~n$&yܟ~h ݦy]A}:½X18'4Sxi;B,33R/#8swWC-w~jEk(rJŹ4pl1bSQ6h0\ n߫{e8m,؜,#Чx0FLoSR e 4mjL6{v⽘ݼe1[Xo6sn${#9Iy5Y ZTua s(j3F=bUʄa:*Y*m䇒~@ 9UjtF鬱7ZޓYM}!<KՆ<;+eg/bê@-JApipx7Z.y?^g@A^}&Z\ecvDƦT1.B0WA̳WoENgX"zˑpn9a D"A8^ 2@X7$*^|[7Cɶ+~5&ȵչk ՜( /. ngն'X][rV+C4x+ȆmY>r|-(OU3pHqrr)딐t*z38l*5 _ӰOΨPH5<߁P!R)E'DU]MUuoGW[ 7Phðñt=;1.j)nI}ldz }aJ'0ꪀ.nE+vWdc GzYXYW1pR357y$z%Ybt UMAҨ38\a a\,5H3kVъt:>[ip\-:HaT;ʲ=[X` P\/]NR'tCd ").Y/TCU$*g%b;MTtD6dXg11͠b*Lcn?\Ʀ3!']闺Mv _IE{SCqB` YyI]Y-Tqw#f^TX# vL & ^I:^鸮St|wgH0&,[T,UpNp=.͔nP Tp b[99* =}bg`2HUb틦|@b>u_Oߴoi]+[`n{und{nizR#+%w еd k|q%YO 3Lĭ靊E$W#EfSrP@iؓΫͨ˥'x> %yxd/$+rUb䖄pîMcSH#Ks2YcRmʒʔ `V'm4&~ů`j6D*i]@C2W X7"f& FFMgu97;wGFJ՚g#2Tk(]ºlrWTZ__a㐰$cN_2v/7'vK`97Vn IEn"B:08QhGNJ?tVRn`}|todmJfӀ.#slcw.]HOo^.gK4^\wB{ًtY)tv nH"aZ7Ӻǐ n'*Y omL6*}Vo1@ @,@k0ѐ%Ɓ>l*4.fB\l,};gק0<L$Yb&]в⎷ zٷN#YZ 4~gEi^P cS4i)I_;vvbPQ+Yj4.{7uW冺RlF'dO<-dKJNĢ%yZAf4u] :Sw :mc ϧx 2q@3Yt /1^38 YZ