Strange advisory

B.R. reallfqq-nginx at yahoo.fr
Sat May 10 18:59:42 UTC 2014


I just saw something strange on http://nginx.org/en/security_advisories.html
:
"An error log data are not sanitized
Severity: none
CVE-2009-4487 <http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-4487>
Not vulnerable: none
Vulnerable: all"

Severity is labelled as 'None', though the CVE talks, among other stuff,
about 'arbitrary commands and file write'.
Is your advisories page wrong? Is the CVE wrong? Has this been solved?
---
*B. R.*
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://mailman.nginx.org/pipermail/nginx/attachments/20140510/65899d37/attachment.html>


More information about the nginx mailing list