Remote attackers could cause denial of service by disconnecting
partway through making a request.
CVE-2007-1870
A NULL pointer dereference could cause a crash when serving files
with a mtime of 0.
For the stable distribution (etch) these problems have been fixed in
version 1.4.13-4etch1.
For the unstable distribution (sid) these problems have been fixed in
version 1.4.14-1.
We recommend that you upgrade your lighttpd package.
Upgrade Instructions
- --------------------wget url
will fetch the file for you
dpkg -i file.deb
will install the referenced file.
If you are using the apt-get package manager, use the line for
sources.list as given below:
apt-get update
will update the internal database
apt-get upgrade
will install corrected packages
You may use an automated update by adding the resources from the
footer to the proper configuration.
Source archives:
Size/MD5 checksum: 1098 ef3730d86ea77e526e66127d934f03c6
...
Get the latest Linux and open source security news straight to your inbox.