-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Tue, 16 Apr 2024 00:11:43 +0300 Source: mini-httpd Architecture: source Version: 1.30-10 Distribution: unstable Urgency: medium Maintainer: Alexandru Mihail <alexandru.mihail2897@gmail.com> Changed-By: Alexandru Mihail <alexandru.mihail2897@gmail.com> Closes: 714549 Changes: mini-httpd (1.30-10) unstable; urgency=medium . * Added patch improving handling of "charset=%s" in error pages and directory listing. Before, a literal "%s" was output as opposed to the actual charset. Now, the correct charset (UTF-8 for dirs and ISO-8859-1 for err) is output. Thanks again, Alexander Foken ! (Closes: #714549) * Added a Systemd DocumentationKey entry fixing lintian warning. This points to the manpage for now. * Added SystemD hardening features to service. The directives I have provided should have no impact. I've confirmed no impact to basic functionality, vhosting, error pages and CGI. I managed to get the service to a "4.7 - OK" rating by using systemd-analyze security mini-httpd (all the way from 9.6). I have NOT enabled hardening features which have a high change of impacting functionality such as removing CAP_CHROOT which would mean mini_httpd's chroot mode of operation is forbidden. Help is welcome in improving these options (maybe someone with a security background could chip in). * Added a NEWS entry informing users of potential breakage due to new systemd hardening features. Checksums-Sha1: 549f15c01f77ce887dceeb524f4f2289e7a83b72 1873 mini-httpd_1.30-10.dsc 0182f78000d0879fff35b8d47454a567a0849716 18884 mini-httpd_1.30-10.debian.tar.xz 156a5aa0bd32ccdde965ffde8032a9a63758e613 6678 mini-httpd_1.30-10_amd64.buildinfo Checksums-Sha256: 12e92bea723f1fd28e54dcc33b3243f169d512cb739c78faa99b8a8dab50a2d4 1873 mini-httpd_1.30-10.dsc 3733186068d64cbb66f9799895a129c9cb602eae0e4162942a13e7a3960eb431 18884 mini-httpd_1.30-10.debian.tar.xz acf82d21e9d2d5c3936cc225ce2aa3e7c7ebe4f1549fd88add21779cb719e8fb 6678 mini-httpd_1.30-10_amd64.buildinfo Files: 5593adacb1bfc758dcbd3b7df140f4c8 1873 web optional mini-httpd_1.30-10.dsc ec9237a4ae3188103f062f790a7fd7db 18884 web optional mini-httpd_1.30-10.debian.tar.xz 5105a95d59da69f950901b25af8dac1c 6678 web optional mini-httpd_1.30-10_amd64.buildinfo -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEQnSLnnbYmXmeH74Us6fPDIAYhs8FAmYmab8ACgkQs6fPDIAY hs9QzRAAr9PY2Q4lcaLFQJws16nPN56dzEwiB/qPDXI0zwpq6TUaWqOsjsgF3Hu6 rj9dqdV5OKplfs316l3hnTTlAR3Jq4IsDxOl5e32spRkvywQLM3nfQHGr/UkSsVD BwcTrmFwxv/xpusWewzdE3/EqxSrXxxq1cY3EkkT+9OMHvhJZAd8/rLxWWlZSykZ fyJ8+572VWVAqqqpcSu0mdIUOnA+CEKBZMmntsZMKQbB5Q/M09ajxdnLCDpQp0Iv f4PCK81sheVoRWrO769abZXYtgnLabCX2B24ICXkfTze9GA2szitA6ppt6xWoXgx O0YGmkQavEpQm6su5rTu0khB1dgE0AvkS+VRFk13zbdLZrwm7n9OU6HLtwlKxLJE uuZVVofBuzmPgdGOWLuI9A/C7sSBQTsLVmPCR397954VwSGOtTd/I9yyDyFwBIub eBAS0C9zb12ZsFW6v3PkJNgmkhXrSG+x2dXAODbCIkogXN6KOh+L7TeBsRLSaJFw mx2Ui3M8fAgQ/fmBz5h5ZsfqExzhb/Up5p4DV1lmSt4UHa9yaQcmOl3o51sdX89T MvDqPXXolq2lguk/LnaBDk8VXKFSyATcuXGwSrBx/CiV1gbp1f+8hF9j7EPtOPgD nErgfYhf11Bc5i6hq4PmLh6xcwR3p34yM3kz8J3GxJylrC4ywIY= =tEGS -----END PGP SIGNATURE-----
Attachment:
pgpZ9VPNMOyJM.pgp
Description: PGP signature