CVE-2007-1870
lighttpd before 1.4.14 allows attackers to cause a denial of service (crash) via a request to a file whose mtime is 0, which results in a NULL pointer dereference.
Date published : 2007-04-17
http://www.securityfocus.com/bid/23515
http://www.securityfocus.com/archive/1/466464/30/6900/threaded
