THREATOPS
THREAT OPSThreat News › How an Old Bug in Lighttpd Gained New Life in AMI BMC, Including Lenovo and Intel products

How an Old Bug in Lighttpd Gained New Life in AMI BMC, Including Lenovo and Intel products

infobinarlyPublished 2025-11-18

The software supply chain is complicated, and all the issues associated with it are something we haven't dealt with before and require a different mindset and approach. The vulnerability in Lighttpd was discovered and fixed back in 2018, but a CVE was not assigned to this vulnerability, and a fix was delivered silently by project maintainers. Frequently, the software that uses the open-sourced com

Original source: https://www.binarly.io/blog/how-an-old-bug-in-lighttpd-gained-new-life-in-ami-bmc-including-lenovo-and-intel-products