[Bug 279490] Re: new lighttpd security fixes

Marcin Gibula m.gibula at gmail.com
Thu Mar 12 07:58:34 UTC 2009


Hi,
I'm attaching new version of debdiff. Two changes there:

- Added brief notes about whats being fixed (if it's too short I can write something longer)
- Removed fix for CVE-2008-4359 from the patch list (patch is still there, it's just not applied) - it's known to cause regressions and it has been removed from vanillia lighttpd tree (http://redmine.lighttpd.net/issues/show/1720). I think it's better to leave it as is, rather than break working configurations.

And yes, I've tested it, it compiles and seems to be working.

** Attachment added: "Security fixes for hardy's lighttpd package - v2"
   http://launchpadlibrarian.net/23774266/lighttpd_12032009.debdiff

-- 
new lighttpd security fixes
https://bugs.launchpad.net/bugs/279490
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.

-- 
ubuntu-bugs mailing list
ubuntu-bugs at lists.ubuntu.com
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs




More information about the universe-bugs mailing list