summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorGustavo Zacarias <gustavo@zacarias.com.ar>2010-02-09 11:30:06 -0300
committerPeter Korsgaard <jacmet@sunsite.dk>2010-02-09 16:23:52 +0100
commitd5d48254dc539dfb3f50d18fa3d72a1effd74267 (patch)
treec9fdee0a431bd28d5803c7a6c7a0bf144dd8c446
parent640c74037867690532615650839316feb233a227 (diff)
Bump lighttpd to 1.4.26
Closes #1063. lighttpd 1.4.26 fixes: * Request parser handling for splitted header data * FD leak in mod_cgi * Segfault with broken configs in mod_rewrite/mod_redirect * An OOM/DoS vulnerability (CVE-2010-0295) Signed-off-by: Gustavo Zacarias <gustavo@zacarias.com.ar> Signed-off-by: Peter Korsgaard <jacmet@sunsite.dk>
-rw-r--r--CHANGES1
-rw-r--r--package/lighttpd/lighttpd.mk3
2 files changed, 2 insertions, 2 deletions
diff --git a/CHANGES b/CHANGES
index 6037b24e9..9f9aa015c 100644
--- a/CHANGES
+++ b/CHANGES
@@ -50,6 +50,7 @@
#1009: [SECURITY] Bump php to 5.2.12
#1015: [SECURITY] Bump bind to 9.5.1-P2
#1027: Busybox flash commands conflict with those from mtd-utils
+ #1063: [SECURITY] Update lighttpd to 1.4.26
2009.11, Released December 1st, 2009:
diff --git a/package/lighttpd/lighttpd.mk b/package/lighttpd/lighttpd.mk
index 2326722e6..b17f72c5f 100644
--- a/package/lighttpd/lighttpd.mk
+++ b/package/lighttpd/lighttpd.mk
@@ -4,10 +4,9 @@
#
#############################################################
-LIGHTTPD_VERSION = 1.4.25
+LIGHTTPD_VERSION = 1.4.26
LIGHTTPD_SITE = http://download.lighttpd.net/lighttpd/releases-1.4.x
LIGHTTPD_LIBTOOL_PATCH = NO
-LIGHTTPD_DEPENDENCIES =
ifneq ($(BR2_LARGEFILE),y)
LIGHTTPD_LFS:=$(DISABLE_LARGEFILE) --disable-lfs