Package: msp-webserver
Severity: grave
Version: 0.8.11-2
Tags: security

Hi,

The following CVE (Common Vulnerabilities & Exposures) id was published for 
msp-webserver.

CVE-2008-5160[1]:
> Unspecified vulnerability in MyServer 0.8.11 allows remote attackers to
> cause a denial of service (daemon crash) via multiple invalid requests with
> the HTTP GET, DELETE, OPTIONS, and possibly other methods, related to a
> "204 No Content error."

If you fix the vulnerability please also make sure to include the CVE id in 
the changelog entry.

[1] http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-5160
     http://security-tracker.debian.net/tracker/CVE-2008-5160

Cheers,
-- 
Raphael Geissert - Debian Maintainer
www.debian.org - get.debian.net

Attachment: signature.asc
Description: This is a digitally signed message part.

Reply via email to