Opened 15 years ago

Closed 14 years ago

#22271 closed update (fixed)

nginx 7.59 has a buffer underflow (remote execution of arbitrary code)

Reported by: rama@… Owned by: boeyms@…
Priority: Normal Milestone:
Component: ports Version: 1.8.1
Keywords: security Cc:
Port: nginx

Description

nginx before before 0.7.62 is vulnerable.

References:

http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-2629

http://www.kb.cert.org/vuls/id/180065

Attached is a port for the latest stable version, 0.7.63

Attachments (1)

nginx.tgz (3.3 KB) - added by rama@… 15 years ago.
Updated Portfile and Patches

Download all attachments as: .zip

Change History (3)

Changed 15 years ago by rama@…

Attachment: nginx.tgz added

Updated Portfile and Patches

comment:1 Changed 15 years ago by mf2k (Frank Schima)

Cc: boeyms@… removed
Owner: changed from macports-tickets@… to boeyms@…
Priority: HighNormal

comment:2 Changed 14 years ago by boeyms@…

Resolution: fixed
Status: newclosed

Addressed in r60653 by updating to 0.7.64, which also addresses VU#120541. Thank you for opening this ticket, and apologies for the delay.

Note: See TracTickets for help on using tickets.