[pkg-lighttpd] Bug#413917: lighttpd: ldap connections leaks in mod_auth

Yann Rouillard yann at pleiades.fr.eu.org
Wed Mar 7 23:00:10 CET 2007


Package: lighttpd
Version: 1.4.13-4
Severity: important
Tags: patch

I recently replaced apache with lighttpd and has a problem on a page with 600 pictures protected by ldap password,
each time I consult the page, my ldap server is overloaded by ldap connections from lighttpd.
It seems for each request, mod_auth creates a ldap connection that is not closed or reused anymore.

I opened a bug upstream but didn't received an answer yet, I open this bug here so this may be fixed for etch.
I attached a patch in the upstream bug: http://trac.lighttpd.net/trac/ticket/1066

Yann

-- System Information:
Debian Release: 4.0
  APT prefers testing
  APT policy: (500, 'testing')
Architecture: i386 (i686)
Shell:  /bin/sh linked to /bin/bash
Kernel: Linux 2.6.18-4-vserver-686
Locale: LANG=fr_FR.UTF-8, LC_CTYPE=fr_FR.UTF-8 (charmap=UTF-8)

Versions of packages lighttpd depends on:
ii  libattr1                    2.4.32-1     Extended attribute shared library
ii  libbz2-1.0                  1.0.3-6      high-quality block-sorting file co
ii  libc6                       2.3.6.ds1-13 GNU C Library: Shared libraries
ii  libldap2                    2.1.30-13.3  OpenLDAP libraries
ii  libpcre3                    6.7-1        Perl 5 Compatible Regular Expressi
ii  libssl0.9.8                 0.9.8c-4     SSL shared libraries
ii  lsb-base                    3.1-23       Linux Standard Base 3.1 init scrip
ii  mime-support                3.39-1       MIME files 'mime.types' & 'mailcap
ii  zlib1g                      1:1.2.3-13   compression library - runtime

Versions of packages lighttpd recommends:
ii  php5-cgi                      5.2.0-8    server-side, HTML-embedded scripti

-- no debconf information




More information about the pkg-lighttpd-maintainers mailing list