lighttpd potential DoS crash in etag.c

Bug #138310 reported by Jamie Strandboge
254
Affects Status Importance Assigned to Milestone
lighttpd (Ubuntu)
Fix Released
Undecided
Jamie Strandboge

Bug Description

Code etag.c and buffer.c may try to dereference a NULL pointer.

Revision history for this message
Jamie Strandboge (jdstrand) wrote :

lighttpd 1.4.17 and higher is not affected. Patch can be found in upstream SVN revision 1925

Changed in lighttpd:
assignee: nobody → jamie-strandboge
status: New → In Progress
Revision history for this message
Jamie Strandboge (jdstrand) wrote :

Disregard previous comment. SVN revision 1969 and 1971 fix this bug.

Changed in lighttpd:
status: In Progress → Fix Committed
Revision history for this message
Jamie Strandboge (jdstrand) wrote :

Fix released on Dapper, Edgy and Feisty

Changed in lighttpd:
status: Fix Committed → Fix Released
To post a comment you must log in.
This report contains Public Security information  
Everyone can see this security related information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.