Bug#390555: CVE-2006-5050: Directory traversal vulnerability in httpd in busybox

2006-10-01 Thread Stefan Fritsch
Package: busybox Severity: grave Tags: security Justification: user security hole A vulnerability has been found in busybox: Directory traversal vulnerability in httpd in Rob Landley BusyBox allows remote attackers to read arbitrary files via URL-encoded "%2e%2e/" sequences in the URI. Please m

Re: Squeeze can't fit on 512MiB

2010-11-01 Thread Stefan Fritsch
On Friday 29 October 2010, Sven Joachim wrote: > On 2010-10-29 11:58 +0200, Mike Hommey wrote: > > On Fri, Oct 29, 2010 at 11:36:59AM +0200, Adam Borowski wrote: > >> Or, for a less drastic solution, use localepurge. Losing the > >> docs is a significant loss, you don't want to suffer that > >> un

Bug#673401: task-web-server: Please remove mod_perl and mod_python from task-web-server

2012-05-18 Thread Stefan Fritsch
Package: task-web-server Version: 3.09 Severity: normal mod_python is obsoleted by mod_wsgi and basically dead upstream (last commit to svn was 3 years ago). And mod_perl is IMNSHO not so popular anymore that it needs to be installed by default. Of course, the mod_python and mod_perl maintainer

Bug#673401: task-web-server: Please remove mod_perl and mod_python from task-web-server

2012-05-21 Thread Stefan Fritsch
On Monday 21 May 2012, Cyril Brulebois wrote: > Christian PERRIER (21/05/2012): > > As you mention mod_wsgi to be obsoleting mod_python, do you think > > we should install one of libapache2-mod-wsgi* packages with the > > task? > > There are many other things, as can be seen in django (a python w