Explore top 10 tips to secure your open-source projects now. Read More

×
Alerts This Week
Warning Icon 1 526
Alerts This Week
Warning Icon 1 526

Gentoo: 200804-11 Advisory: nginx DoS and Configuration Leak

gentoo
Calendar Grey March 5, 2008
Scroller Gentoo
Recent vulnerabilities in Lighttpd were detailed in the Gentoo advisory GLSA 200803-10. This could lead to denial-of-service issues or unauthorized access to the source of CGI scripts.
Multiple vulnerabilities have been discovered in lighttpd.

Summary

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Gentoo Linux Security Advisory                           GLSA 200803-10
                                            https://security.gentoo.org/

Severity: Normal Title: lighttpd: Multiple vulnerabilities Date: March 05, 2008 Bugs: #211230, #211956 ID: 200803-10

Synopsis ======= Multiple vulnerabilities have been discovered in lighttpd.
Background ========= lighttpd is a lightweight high-performance web server.
Affected packages ================ ------------------------------------------------------------------- Package / Vulnerable / Unaffected ------------------------------------------------------------------- 1 www-servers/lighttpd < 1.4.18-r2 >= 1.4.18-r2
========== lighttpd contains a calculation error when allocating the global file descriptor array (CVE-2008-0983). Furthermore, it sends the source of a CGI script instead of returning a 50...

Read the Full Advisory

Resolution

References

Availability

style>.gentoo_availability{display:block;}

Concerns

Synopsis

Background

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Affected Packages

Impact

Workaround