Your message dated Mon, 8 Dec 2008 21:23:05 -0600
with message-id <[EMAIL PROTECTED]>
and subject line msp-webserver no longer in the archive
has caused the Debian Bug report #506268,
regarding CVE-2008-5160: allows remote attackers to cause a denial of service 
(daemon crash) via multiple invalid requests
to be marked as done.

This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.

(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact [EMAIL PROTECTED]
immediately.)


-- 
506268: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=506268
Debian Bug Tracking System
Contact [EMAIL PROTECTED] with problems
--- Begin Message ---
Package: msp-webserver
Severity: grave
Version: 0.8.11-2
Tags: security

Hi,

The following CVE (Common Vulnerabilities & Exposures) id was published for 
msp-webserver.

CVE-2008-5160[1]:
> Unspecified vulnerability in MyServer 0.8.11 allows remote attackers to
> cause a denial of service (daemon crash) via multiple invalid requests with
> the HTTP GET, DELETE, OPTIONS, and possibly other methods, related to a
> "204 No Content error."

If you fix the vulnerability please also make sure to include the CVE id in 
the changelog entry.

[1] http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-5160
     http://security-tracker.debian.net/tracker/CVE-2008-5160

Cheers,
-- 
Raphael Geissert - Debian Maintainer
www.debian.org - get.debian.net

Attachment: signature.asc
Description: This is a digitally signed message part.


--- End Message ---
--- Begin Message ---
Version: 0.8.11-2+rm

FTP-masters removed it from the archive, thereby closing this bug.

Cheers,
-- 
Raphael Geissert - Debian Maintainer
www.debian.org - get.debian.net


--- End Message ---

Reply via email to