Back to list
Mar 12 2008 06:07PM
rPath Update Announcements (announce-noreply rpath com)
rPath Security Advisory: 2008-0106-1
rPath Linux 1
Exposure Level Classification:
Remote Root Deterministic Information Exposure
rPath Issue Tracking System:
Previous versions of the lighttpd package are vulnerable to multiple
Information Exposures, the most serious of which may allow a remote
attacker to read arbitrary files.
lighttpd is not installed by default on rPath Linux systems, and no
default configuration file is provided; only systems customized to
include and configure lighttpd are vulnerable.
Copyright 2008 rPath, Inc.
This file is distributed under the terms of the MIT License.
A copy is available at http://www.rpath.com/permanent/mit-license.html
[ reply ]
Copyright 2010, SecurityFocus