rPSA-2007-0145-1 lighttpd

rPath Update Announcements announce-noreply at rpath.com
Thu Jul 19 07:55:21 EDT 2007


rPath Security Advisory: 2007-0145-1
Published: 2007-07-19
Products: rPath Linux 1
Rating: Severe
Exposure Level Classification:
    Remote User Deterministic Denial of Service
Updated Versions:
    lighttpd=/conary.rpath.com at rpl:devel//1/1.4.15-0.3-1

References:
    https://issues.rpath.com/browse/RPL-1550
    https://issues.rpath.com/browse/RPL-1554

Description:
    Previous versions of the lighttpd package are vulnerable to multiple
    attacks, among which remote attackers may circumvent access-control
    settings or crash the server by issuing various malformed or malicious
    requests.  It has not been determined that these vulnerabilities can
    be exploited to execute malicious code.

Copyright 2007 rPath, Inc.
This file is distributed under the terms of the MIT License.
A copy is available at http://www.rpath.com/permanent/mit-license.html


More information about the update-announce mailing list