lighttpd: bump version, security fix
authorPeter Korsgaard <jacmet@sunsite.dk>
Wed, 21 Dec 2011 09:12:17 +0000 (10:12 +0100)
committerPeter Korsgaard <jacmet@sunsite.dk>
Wed, 21 Dec 2011 09:12:17 +0000 (10:12 +0100)
Important changes:

- [mod_auth] Fix signedness error in http_auth (CVE-2011-4362)
- ssl: disable client initiated renegotiations
- ssl: support mitigating BEAST attack
- fix connection stalls

Signed-off-by: Peter Korsgaard <jacmet@sunsite.dk>
package/lighttpd/lighttpd.mk

index 3f11be33bb6af43f228ac417f92090fe51656bc7..b8aa310c96361c566a30b27cfdf6836a6612fb03 100644 (file)
@@ -4,7 +4,7 @@
 #
 #############################################################
 
-LIGHTTPD_VERSION = 1.4.29
+LIGHTTPD_VERSION = 1.4.30
 LIGHTTPD_SITE = http://download.lighttpd.net/lighttpd/releases-1.4.x
 LIGHTTPD_DEPENDENCIES = host-pkg-config
 LIGHTTPD_CONF_OPT = \