Jump to content
Compatible Support Forums
Sign in to follow this  
news

[SECURITY] DLA-862-1: sitesummary regression update

Recommended Posts

Package : sitesummary

Version : 0.1.8+deb7u2

Debian Bug : 852623

 

The fix for CVE-2016-8743 in apache2 2.2.22-13+deb7u8 (DLA-841-1) caused

#852623 in sitesummary, breaking the sitesummary-upload functionality.

To address this sitesummary-upload needs to be changed to send CRLF (\r\n)

line endings to be compliant with the apache security fixes for HTTP requests.

 

For Debian 7 "Wheezy", these problems have been fixed in version

0.1.8+deb7u2.

 

We recommend that you upgrade your sitesummary packages.

 

Further information about Debian LTS security advisories, how to apply

these updates to your system and frequently asked questions can be

found at: https://wiki.debian.org/LTS

 

 

--

cheers,

Holger

 

 

Share this post


Link to post

Please sign in to comment

You will be able to leave a comment after signing in



Sign In Now
Sign in to follow this  

×