Monkey HTTP Daemon: Multiple vulnerabilities Multiple vulnerabilities have been discovered in Monkey HTTP Daemon, the worst of which could result in arbitrary code execution. monkeyd 2013-09-25 2013-09-25 471906 472400 472644 remote 1.2.2 1.2.2

Monkey HTTP Daemon is a lightweight and powerful web server for GNU/Linux.

Multiple vulnerabilities have been discovered in Monkey HTTP Daemon. Please review the CVE identifiers referenced below for details.

A remote attacker could send a specially crafted request, resulting in possible arbitrary code execution or a Denial of Service condition.

There is no known workaround at this time.

All Monkey HTTP Daemon users should upgrade to the latest version:

# emerge --sync # emerge --ask --oneshot --verbose ">=www-servers/monkeyd-1.2.2"
CVE-2013-2163 CVE-2013-3724 CVE-2013-3843 pinkbyte creffett