[ubuntu/precise-updates] mod-wsgi 3.3-4ubuntu0.1 (Accepted)

Ubuntu Archive Robot cjwatson+ubuntu-archive-robot at chiark.greenend.org.uk
Mon May 26 12:58:07 UTC 2014


mod-wsgi (3.3-4ubuntu0.1) precise-security; urgency=medium

  * SECURITY UPDATE: Fix possibility of local privilege escalation when
    using daemon mode. (LP: #1322338)
    - Only systems running kernel versions >= 2.6 and < 3.1 are affected.
    - CVE-2014-0240
    - debian/patches/CVE-2014-0240.patch: backport upstream commit
  * SECURITY UPDATE: Fix possibility of disclosure via Content-Type response
    header.
    - CVE-2014-0242
    - debian/patches/CVE-2014-0242.patch: backport upstream commit

Date: 2014-05-23 06:40:18.049700+00:00
Changed-By: Felix Geyer <debfx-pkg at fobos.de>
Signed-By: Ubuntu Archive Robot <cjwatson+ubuntu-archive-robot at chiark.greenend.org.uk>
https://launchpad.net/ubuntu/precise/+source/mod-wsgi/3.3-4ubuntu0.1
-------------- next part --------------
Sorry, changesfile not available.


More information about the Precise-changes mailing list