jetty (6.1.22-1ubuntu1.1) lucid-security; urgency=low
* SECURITY UPDATE: denial of service via many hash collisions
- debian/patches/CVE-2011-4461.patch: limit number of form parameters
to avoid a DoS in
modules/jetty/src/main/java/org/mortbay/jetty/Request.java,
modules/jetty/src/main/java/org/mortbay/jetty/handler/ContextHandler.java,
modules/jetty/src/test/java/org/mortbay/jetty/RequestTest.java,
modules/util/src/main/java/org/mortbay/util/UrlEncoded.java,
modules/util/src/test/java/org/mortbay/util/URLEncodedTest.java.
- CVE-2011-4461
Date: Mon, 23 Apr 2012 14:42:06 -0400
Changed-By: Marc Deslauriers <[email protected]>
Maintainer: Ubuntu Developers <[email protected]>
https://launchpad.net/ubuntu/lucid/+source/jetty/6.1.22-1ubuntu1.1
Format: 1.8
Date: Mon, 23 Apr 2012 14:42:06 -0400
Source: jetty
Binary: libjetty-java libjetty-java-doc libjetty-extra-java libjetty-extra jetty
Architecture: source
Version: 6.1.22-1ubuntu1.1
Distribution: lucid-security
Urgency: low
Maintainer: Ubuntu Developers <[email protected]>
Changed-By: Marc Deslauriers <[email protected]>
Description:
jetty - Java servlet engine and webserver
libjetty-extra - Java servlet engine and webserver -- extra libraries
libjetty-extra-java - Java servlet engine and webserver -- extra libraries
libjetty-java - Java servlet engine and webserver -- core libraries
libjetty-java-doc - Javadoc for the Jetty API
Changes:
jetty (6.1.22-1ubuntu1.1) lucid-security; urgency=low
.
* SECURITY UPDATE: denial of service via many hash collisions
- debian/patches/CVE-2011-4461.patch: limit number of form parameters
to avoid a DoS in
modules/jetty/src/main/java/org/mortbay/jetty/Request.java,
modules/jetty/src/main/java/org/mortbay/jetty/handler/ContextHandler.java,
modules/jetty/src/test/java/org/mortbay/jetty/RequestTest.java,
modules/util/src/main/java/org/mortbay/util/UrlEncoded.java,
modules/util/src/test/java/org/mortbay/util/URLEncodedTest.java.
- CVE-2011-4461
Checksums-Sha1:
3ec9e8557f57dded3af01df123b5c70b43f3d1ac 2382 jetty_6.1.22-1ubuntu1.1.dsc
291eb2ddc064f6d81acea933f9a977ce4e84116c 24910 jetty_6.1.22-1ubuntu1.1.diff.gz
Checksums-Sha256:
40dfcb4cc4b4303ea0502ae718b6cab7bec1cf062d2e4d64dfad6937333a9887 2382
jetty_6.1.22-1ubuntu1.1.dsc
970af1c77deb125b82e326dfe7ddbdf5beba0dc73981c3907b0b1a19895e2d67 24910
jetty_6.1.22-1ubuntu1.1.diff.gz
Files:
db6491d35e06cc17696f709c9e28c81b 2382 java optional jetty_6.1.22-1ubuntu1.1.dsc
d38886d3518ea081d7d4d80edc9492f8 24910 java optional
jetty_6.1.22-1ubuntu1.1.diff.gz
Original-Maintainer: Debian Java Maintainers
<[email protected]>
--
Lucid-changes mailing list
[email protected]
Modify settings or unsubscribe at:
https://lists.ubuntu.com/mailman/listinfo/lucid-changes