Update Info

openSUSE-2022-10140


Security update for lighttpd


Type: security
Severity: moderate
Issued: 2022-10-03
Description:
This update for lighttpd fixes the following issues:

lighttpd was updated to 1.4.67:

* Update comment about TCP_INFO on OpenBSD
* [mod_ajp13] fix crash with bad response headers (fixes #3170)
* [core] handle RDHUP when collecting chunked body CVE-2022-41556 (boo#1203872)
* [core] tweak streaming request body to backends
* [core] handle ENOSPC with pwritev() (#3171)
* [core] manually calculate off_t max (fixes #3171)
* [autoconf] force large file support (#3171)
* [multiple] quiet coverity warnings using casts
* [meson] add license keyword to project declaration


              

Packages


  • lighttpd-1.4.67-bp154.2.6.1