Debian has released bug fixes for lighttpd and gaim packages.
Gaim, a multi-protocol instant messaging client, was discovered to be vulnerable to several integer overflows in its MSN protocol handlers, allowing remote attackers to execute arbitrary code.
Lighttpd, a fast webserver with minimal memory footprint was discovered to have several local and remote vulnerabilities listed below:
1. lighttpd 1.4.18 and other versions before 1.5.0 do not properly calculate the size of a file descriptor array. This allows remote attackers to cause a denial of service by using large number of connections that will lead to a system crash.
2. connections.c in lighttpd before 1.4.16 might accept connections greater than the configured maximum. This allows remote attackers to cause a denial of service with a large number of connection attempts.
The updates fix the multiple Denial of Service (DOS) issue in lighttpd and the execution of arbitrary code and buffer overflow problems in gaim.
Popularity: 2% [?]
| 2.5 |
In a move that is likely to remind 

































