[ubuntu/precise-security] nginx 1.1.19-1ubuntu0.5 (Accepted)

Seth Arnold seth.arnold at canonical.com
Fri Nov 22 04:08:20 UTC 2013

nginx (1.1.19-1ubuntu0.5) precise-security; urgency=low

  * SECURITY UPDATE: ACL bypass via space character (LP: #1253691)
    - debian/patches/cve-2013-4547.patch: modify src/http/ngx_http_parse.c
      to account for a space character, fixing an issue which could result in 
      security restrictions being bypassed
    - CVE-2013-4547

nginx (1.1.19-1ubuntu0.4) precise; urgency=low

  [ Thomas Ward ]
  * Move postinst symlinking of default nginx config to nginx-common only.
    (closes LP: #1206878)

  [ Iain Lane ]
  * Take additional change from Debian patch to check sites-enabled and
    sites-available are directories before symlinking .../default.

nginx (1.1.19-1ubuntu0.3) precise-proposed; urgency=low

  * Move configuration file removal for package purging to nginx-common only.
    (closes LP: #1206878)

Date: 2013-11-22 03:04:24.059146+00:00
Changed-By: Thomas Ward <teward at trekweb.org>
Signed-By: Seth Arnold <seth.arnold at canonical.com>
-------------- next part --------------
Sorry, changesfile not available.

More information about the Precise-changes mailing list