Who When What Removed Added
jakub@gentoo.org 2008-03-10 12:21:35 0000 Severity major minor
Summary Lighttpd 1.4.18 allows remote exploits when using mod_userdir with /~nobody on gentoo www-servers/lighttpd-1.4.18 - information disclosure w/ misconfigured mod_userdir
rbu@gentoo.org 2008-03-10 12:42:45 0000 CC www-servers@gentoo.org
Summary www-servers/lighttpd-1.4.18 - information disclosure w/ misconfigured mod_userdir www-servers/lighttpd mod_userdir "userdir.path" defaults to .
smithj@gentoo.org 2008-03-10 13:17:07 0000 Summary www-servers/lighttpd mod_userdir "userdir.path" defaults to . www-servers/lighttpd mod_userdir "userdir.path" defaults to . CVE-requested
hoffie@gentoo.org 2008-03-10 13:20:12 0000 CC hoffie@gentoo.org
rbu@gentoo.org 2008-03-10 14:32:01 0000 Summary www-servers/lighttpd mod_userdir "userdir.path" defaults to . CVE-requested www-servers/lighttpd mod_userdir "userdir.path" defaults to . (CVE requested)
rbu@gentoo.org 2008-03-10 17:13:38 0000 Status NEW ASSIGNED
Status Whiteboard C3 [ebuild]
smithj@gentoo.org 2008-03-10 22:53:46 0000 Summary www-servers/lighttpd mod_userdir "userdir.path" defaults to . (CVE requested) www-servers/lighttpd mod_userdir "userdir.path" defaults to . CVE-2008-1270
rbu@gentoo.org 2008-03-10 23:01:35 0000 CC sh@gentoo.org, ia64@gentoo.org, arm@gentoo.org, release@gentoo.org, amd64@gentoo.org, x86@gentoo.org, ppc64@gentoo.org, hppa@gentoo.org, alpha@gentoo.org, sparc@gentoo.org, ppc@gentoo.org
Summary www-servers/lighttpd mod_userdir "userdir.path" defaults to . CVE-2008-1270 www-servers/lighttpd < 1.4.18-r3 mod_userdir "userdir.path" defaults to . (CVE-2008-1270)
Status Whiteboard C3 [ebuild] C3 [stable]
jer@gentoo.org 2008-03-11 03:30:49 0000 CC hppa@gentoo.org
corsair@gentoo.org 2008-03-11 08:45:10 0000 CC ppc64@gentoo.org
fauli@gentoo.org 2008-03-11 09:27:52 0000 CC x86@gentoo.org
armin76@gentoo.org 2008-03-11 15:17:33 0000 CC sparc@gentoo.org, ia64@gentoo.org, alpha@gentoo.org
beandog@gentoo.org 2008-03-11 23:36:52 0000 CC amd64@gentoo.org
rbu@gentoo.org 2008-03-13 13:05:08 0000 CC sh@gentoo.org, arm@gentoo.org, release@gentoo.org, ppc@gentoo.org
rbu@gentoo.org 2008-03-21 02:21:30 0000 Status Whiteboard C3 [stable] C3 [glsa?]
rbu@gentoo.org 2008-03-21 02:22:37 0000 CC ppc@gentoo.org
Status Whiteboard C3 [glsa?] C3 [stable]
dertobi123@gentoo.org 2008-03-21 09:09:48 0000 CC ppc@gentoo.org
rbu@gentoo.org 2008-03-21 10:52:42 0000 Status Whiteboard C3 [stable] C3 [glsa?]
keytoaster@gentoo.org 2008-03-29 20:15:45 0000 Status Whiteboard C3 [glsa?] C3 [glsa]
keytoaster@gentoo.org 2008-04-10 15:42:51 0000 Status ASSIGNED RESOLVED
Resolution FIXED

Back to bug 212930