Bug 1063

Summary: [SECURITY] Update lighttpd to 1.4.26
Product: buildroot Reporter: Gustavo Zacarias <gustavo>
Component: Outdated packageAssignee: unassigned
Status: RESOLVED FIXED    
Severity: normal CC: buildroot
Priority: P5    
Version: unspecified   
Target Milestone: ---   
Hardware: PC   
OS: Linux   
Host: i686-linux Target: arm-softfloat-linux-uclibcgnueabi
Build:
Attachments: Bump lighttpd to 1.4.26

Description Gustavo Zacarias 2010-02-09 14:32:14 UTC
Created attachment 1081 [details]
Bump lighttpd to 1.4.26

lighttpd 1.4.26 fixes:

* Request parser handling for splitted header data
* FD leak in mod_cgi
* Segfault with broken configs in mod_rewrite/mod_redirect
* An OOM/DoS vulnerability (CVE-2010-0295)
Comment 1 Peter Korsgaard 2010-02-09 15:23:50 UTC
Committed, thanks