Bug 717080 - nginx: possible arbitrary code execution with null bytes in URI [epel-4]
Summary: nginx: possible arbitrary code execution with null bytes in URI [epel-4]
Keywords:
Status: CLOSED ERRATA
Alias: None
Product: Fedora EPEL
Classification: Fedora
Component: nginx
Version: el4
Hardware: All
OS: Linux
medium
medium
Target Milestone: ---
Assignee: Jeremy Hinegardner
QA Contact: Fedora Extras Quality Assurance
URL:
Whiteboard:
Depends On:
Blocks: 717078
TreeView+ depends on / blocked
 
Reported: 2011-06-27 22:02 UTC by Vincent Danen
Modified: 2012-02-20 03:40 UTC (History)
3 users (show)

Fixed In Version:
Clone Of:
Environment:
Last Closed: 2012-02-20 03:40:07 UTC
Type: ---
Embargoed:


Attachments (Terms of Use)

Description Vincent Danen 2011-06-27 22:02:25 UTC
epel-4 tracking bug for nginx: see blocks bug list for full details of the security issue(s).

This bug is never intended to be made public, please put any public notes
in the 'blocks' bugs.


[bug automatically created by: add-tracking-bugs]

Comment 1 Vincent Danen 2011-08-02 17:25:23 UTC
Any possibility of nginx being updated in the near future?  This has the potential of being very problematic for people who use nginx.  Thanks.

Comment 2 Vincent Danen 2011-08-02 17:26:18 UTC
Further details on this flaw will be published later this month, so it would also be ideal to have this corrected before then.

Comment 3 Jeremy Hinegardner 2011-08-02 20:57:00 UTC
Yes, I should be able to get this taken care of early next week. Thanks for the prod.

Comment 4 Vincent Danen 2011-08-03 05:14:53 UTC
Fantastic.  Thank you!

Comment 5 Neal Poole 2011-08-27 03:34:33 UTC
FYI, the details were published at https://nealpoole.com/blog/2011/08/possible-arbitrary-code-execution-with-null-bytes-php-and-old-versions-of-nginx/

Chinese hackers appear to be particularly interested in this vulnerability. I would recommend trying to release a patched version ASAP.

Comment 6 Jeremy Hinegardner 2012-02-20 01:32:51 UTC
This was pushed to stable back in September.

Should we close this ?

https://admin.fedoraproject.org/updates/FEDORA-EPEL-2011-4281/nginx-0.8.55-1.el5

Comment 7 Jeremy Hinegardner 2012-02-20 03:40:07 UTC
It loks like this should have been closed by bodhi but wasn't. Closing


Note You need to log in before you can comment on or make changes to this bug.