lighttpd 1.4.28-2+squeeze1.3 source package in Debian

Changelog

lighttpd (1.4.28-2+squeeze1.3) stable-security; urgency=high


  * CVE-2013-1427: Switch the socket path for PHP when using FastCGI. /tmp is
    world-writable which may cause security implications if an attacker
    manages to control /tmp/php.socket before the web server (re-)starts.

 -- Arno Töll <email address hidden>  Fri, 15 Mar 2013 19:32:40 +0100

Upload details

Uploaded by:
Debian lighttpd maintainers
Uploaded to:
Squeeze
Original maintainer:
Debian lighttpd maintainers
Architectures:
any
Section:
httpd
Urgency:
Very Urgent

See full publishing history Publishing

Series Pocket Published Component Section

Builds

Downloads

File Size SHA-256 Checksum
lighttpd_1.4.28-2+squeeze1.3.dsc 2.3 KiB 042c219708a4c096a3d5cf3f29224f4239f5fe340c71e60b132ca049a7ce6322
lighttpd_1.4.28.orig.tar.gz 789.4 KiB efd7623f43182723b99c51d57a24158e22a207cd90dca35aaf3b2e3bac115712
lighttpd_1.4.28-2+squeeze1.3.debian.tar.gz 30.6 KiB 1b681731e70f6d509d676c85c497820f2ee047ba24b0c7055dad66ea1e8d4f1e

No changes file available.

Binary packages built by this source