Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×
Gentoo Linux Security Advisory GLSA 200812-04
https://security.gentoo.org/
Severity: Normal
Title: lighttpd: Multiple vulnerabilities
Date: December 02, 2008
Bugs: #238180
ID: 200812-04
Synopsis
=======
Multiple vulnerabilities in lighttpd may lead to information disclosure
or a Denial of Service.
Background
=========
lighttpd is a lightweight high-performance web server.
Affected packages
================
-------------------------------------------------------------------
Package / Vulnerable / Unaffected
-------------------------------------------------------------------
1 www-servers/lighttpd < 1.4.20 >= 1.4.20
==========
Multiple vulnerabilities have been reported in lighttpd:
* Qhy reported a memory leak in the http_request_parse() function in
request.c (CVE-2008-4298).
* Gaetan Bisson reported that URIs are...
style>.gentoo_availability{display:block;}
Get the latest Linux and open source security news straight to your inbox.