Publishing details

Changelog

uwsgi (1.9.17.1-5ubuntu0.1) trusty-security; urgency=medium

  * SECURITY UPDATE: Directory traversal
    - debian/patches/CVE-2018-7490.patch: enforce php default document_root
      behaviour, to not show external files
    - CVE-2018-7490
  * SECURITY UPDATE: Stack buffer overflow in uwsgi_expand_path()
    - debian/patches/CVE-2018-6758.patch: improve uwsgi_expand_path() to
      sanitize input, avoiding stack corruption and potential security issue
    - CVE-2018-6758

 -- Mike Salvatore <email address hidden>  Thu, 27 Sep 2018 14:05:42 -0400

Available diffs

Builds

Built packages

Package files