Overview

Request 96960 superseded

- update to 1.4.30
- Always use our ‘own’ md5 implementation, fixes linking issues
on MacOS (fixes #2331)
- Limit amount of bytes we send in one go; fixes stalling in one
connection and timeouts on slow systems.
- [ssl] fix build errors when Elliptic-Curve Diffie-Hellman is
disabled
- Add static-file.disable-pathinfo option to prevent handling of
urls like …/secret.php/image.jpg as static file
- Don’t overwrite 401 (auth required) with 501 (unknown method)
(fixes #2341)
- Fix mod_status bug: always showed “0/0” in the “Read” column
for uploads (fixes #2351)
- [mod_auth] Fix signedness error in http_auth
(fixes #2370, CVE-2011-4362)
- [ssl] count renegotiations to prevent client renegotiations
- [ssl] add option to honor server cipher order
(fixes #2364, BEAST attack)
- [core] accept dots in ipv6 addresses in host header
(fixes #2359)
- [ssl] fix ssl connection aborts if files are larger than the
MAX_WRITE_LIMIT (256kb)
- [libev/cgi] fix waitpid ECHILD errors in cgi with libev
(fixes #2324)
- add automake as buildrequire to avoid implicit dependency

Loading...
Request History
Marcus Rueckert's avatar

darix created request

- update to 1.4.30
- Always use our ‘own’ md5 implementation, fixes linking issues
on MacOS (fixes #2331)
- Limit amount of bytes we send in one go; fixes stalling in one
connection and timeouts on slow systems.
- [ssl] fix build errors when Elliptic-Curve Diffie-Hellman is
disabled
- Add static-file.disable-pathinfo option to prevent handling of
urls like …/secret.php/image.jpg as static file
- Don’t overwrite 401 (auth required) with 501 (unknown method)
(fixes #2341)
- Fix mod_status bug: always showed “0/0” in the “Read” column
for uploads (fixes #2351)
- [mod_auth] Fix signedness error in http_auth
(fixes #2370, CVE-2011-4362)
- [ssl] count renegotiations to prevent client renegotiations
- [ssl] add option to honor server cipher order
(fixes #2364, BEAST attack)
- [core] accept dots in ipv6 addresses in host header
(fixes #2359)
- [ssl] fix ssl connection aborts if files are larger than the
MAX_WRITE_LIMIT (256kb)
- [libev/cgi] fix waitpid ECHILD errors in cgi with libev
(fixes #2324)
- add automake as buildrequire to avoid implicit dependency


Stephan Kulow's avatar

coolo declined request

Output of check script:
Source validator failed. Try "osc service localrun source_validator"
(E) Attention, lighttpd_1.4.30-0.1.debian.tar.gz is not mentioned in spec files as source or patch.
lighttpd/lighttpd.spec has a %pre with groupadd and/or useradd (unchanged)


Stephan Kulow's avatar

coolo superseded request

superseded by 124105


Saul Goodman's avatar

licensedigger accepted review

{"approve": "preliminary, version number changed"}


Stephan Kulow's avatar

coolo declined review

Output of check script:
Source validator failed. Try "osc service localrun source_validator"
(E) Attention, lighttpd_1.4.30-0.1.debian.tar.gz is not mentioned in spec files as source or patch.
lighttpd/lighttpd.spec has a %pre with groupadd and/or useradd (unchanged)

openSUSE Build Service is sponsored by