[pLog-svn] libpcre3 stack overflow

Andy Wright myside at myside.mine.nu
Fri Feb 22 14:08:53 EST 2008


Their is a security update for libpre3 and devel packages for Ubuntu
Server 6.06:

Version 7.4-0ubuntu0.7.04.2: 

  * SECURITY UPDATE: stack overflow when handling long UTF8 strings.
  * pcre_compile.c, testdata/test{in,out}put4: upstream changes from 7.6
    backported, thanks to Tomas Hoger and Florian Weimer.
  * References
    CVE-2008-0674

I compile lighttpd from source, should I be overly concerned with the
previous build without this fix?
-- 
                                   ___________________________________
Andy Wright                                  andy.wright at extracted.org
IT/IS Professional                         For public and private use.
IT/IS Forum # (608)554-0030 VM                         KEY ID 7CECF855 
Open Forum Skype: extracted              http://7cecf855.extracted.org    
Thanks BB, "water is wet"
                                    ALTERNATIVE: andy.wright at yahoo.com
                                   ___________________________________



More information about the pLog-svn mailing list