Bugtraq mailing list archives

rPSA-2007-0145-1 lighttpd


From: rPath Update Announcements <announce-noreply () rpath com>
Date: Thu, 19 Jul 2007 07:55:21 -0400

rPath Security Advisory: 2007-0145-1
Published: 2007-07-19
Products: rPath Linux 1
Rating: Severe
Exposure Level Classification:
    Remote User Deterministic Denial of Service
Updated Versions:
    lighttpd=/conary.rpath.com@rpl:devel//1/1.4.15-0.3-1

References:
    https://issues.rpath.com/browse/RPL-1550
    https://issues.rpath.com/browse/RPL-1554

Description:
    Previous versions of the lighttpd package are vulnerable to multiple
    attacks, among which remote attackers may circumvent access-control
    settings or crash the server by issuing various malformed or malicious
    requests.  It has not been determined that these vulnerabilities can
    be exploited to execute malicious code.

Copyright 2007 rPath, Inc.
This file is distributed under the terms of the MIT License.
A copy is available at http://www.rpath.com/permanent/mit-license.html


Current thread: