Skip site navigation (1)Skip section navigation (2)
Date:      Sun, 15 Oct 2006 14:43:33 +0200
From:      Robert Joosten <robert@ml.erje.net>
To:        freebsd-questions@freebsd.org
Subject:   Re: PHP new vulnarabilities
Message-ID:  <20061015124332.GC806@iphouse.com>
In-Reply-To: <45322A1D.8070204@hadara.ps>
References:  <45322A1D.8070204@hadara.ps>

next in thread | previous in thread | raw e-mail | index | archive | help
Hi Khaled,

> Affected package: php5-5.1.6
> Type of problem: php -- _ecalloc Integer Overflow Vulnerability.
> <http://www.FreeBSD.org/ports/portaudit/e329550b-54f7-11db-a5ae-00508d6a62df.html>;
> how can i fix this

Compile php from source after applying 
http://www.hardened-php.net/files/CVE-2006-4812.patch ?

I dodn't deploy 5 yet, but maybe an other fix is underway ?

Hth.

Regards,
Robert



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20061015124332.GC806>