LWN.net Logo

lighttpd: denial of service

Package(s):lighttpd CVE #(s):CVE-2008-1531
Created:April 1, 2008 Updated:May 19, 2008
Description: lighttpd 1.4.19 and earlier allows remote attackers to cause a denial of service (active SSL connection loss) by triggering an SSL error, such as disconnecting before a download has finished, which causes all active SSL connections to be lost.
Alerts:
rPath rPSA-2008-0132-1 2008-03-31
Debian DSA-1540-1 2008-04-07
Gentoo 200804-08 2008-04-10
Debian DSA-1540-2 2008-04-15
Fedora FEDORA-2008-3343 2008-04-29
Fedora FEDORA-2008-3376 2008-04-29
SuSE SUSE-SR:2008:011 2008-05-09
Fedora FEDORA-2008-4119 2008-05-17

(Log in to post comments)

Copyright © 2008, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds
Powered by Rackspace Managed Hosting.