Package: lighttpd Version: 1.4.19-5+lenny1 Severity: important The recent upgrade of openssl (to 0.9.8g-15+lenny11, see DSA-2141-1) breaks lighttpd (most likely only if SSL support is enabled).
When trying to start lighttpd using /etc/init.d/lighttpd, the following error occurrs: 2011-01-06 14:27:34: (network.c.336) SSL: error:00000000:lib(0):func(0):reason(0) This is apparently caused by lighttpd bug #2157 (see http://redmine.lighttpd.net/issues/2157), which has been fixed in lighttpd 1.4.27 (upstream release). A bug report similar to this one is Debian bug #572031 -- it also links to the same lighttpd bug. I am not sure why this error happens again (looks like it _should_ have been fixed in Debian), but perhaps it's caused by the openssl upgrade this time (well, obviously!). The lighttpd bug report says: The r2716 [SVN revision] is also needed when the latest OpenSSL version 0.9.8m is used. Now Lenny is using openssl 0.9.8g, but perhaps the above note also applies to that version... -- System Information: Debian Release: 5.0.7 APT prefers stable APT policy: (500, 'stable') Architecture: amd64 (x86_64) Kernel: Linux 2.6.26-1-xen-amd64 (SMP w/1 CPU core) Locale: LANG=en_US.UTF-8, LC_CTYPE=en_US.UTF-8 (charmap=UTF-8) (ignored: LC_ALL set to de_DE.utf8) Shell: /bin/sh linked to /bin/bash Versions of packages lighttpd depends on: ii libattr1 1:2.4.43-2 Extended attribute shared library ii libbz2-1.0 1.0.5-1+lenny1 high-quality block-sorting file co ii libc6 2.7-18lenny6 GNU C Library: Shared libraries ii libfam0 2.7.0-13.3+lenny1 Client library to control the FAM ii libldap-2.4-2 2.4.11-1+lenny2 OpenLDAP libraries ii libpcre3 7.6-2.1 Perl 5 Compatible Regular Expressi ii libssl0.9.8 0.9.8g-15+lenny11 SSL shared libraries ii libterm-readline-perl- 1.0302-1 Perl implementation of Readline li ii lsb-base 3.2-20 Linux Standard Base 3.2 init scrip ii mime-support 3.44-1 MIME files 'mime.types' & 'mailcap ii zlib1g 1:1.2.3.3.dfsg-12 compression library - runtime lighttpd recommends no packages. Versions of packages lighttpd suggests: pn apache2-utils <none> (no description available) ii openssl 0.9.8g-15+lenny11 Secure Socket Layer (SSL) binary a pn rrdtool <none> (no description available) -- no debconf information -- To UNSUBSCRIBE, email to [email protected] with a subject of "unsubscribe". Trouble? Contact [email protected]

