Skip site navigation (1)Skip section navigation (2)
Date:      Sat, 15 Jan 2000 00:41:32 +0100
From:      Dirk Froemberg <dirk@FreeBSD.ORG>
To:        "J.C. Frazier" <wolfman@csocs.com>
Cc:        "Scot W. Hetzel" <hetzels@westbend.net>, Vincent Poy <vince@venus.GAIANET.NET>, Patrick Bihan-Faou <patrick@mindstep.com>, freebsd-ports@FreeBSD.ORG, ache@FreeBSD.ORG, rse@engelschall.com, adam@algroup.co.uk
Subject:   Re: ports/15873: New Apache_fp+php+mod_ssl-1.3.9+3.0.12+2.4.8 port.
Message-ID:  <20000115004132.A76024@physik.TU-Berlin.DE>
In-Reply-To: <387FA260.4398E65B@csocs.com>; from wolfman@csocs.com on Fri, Jan 14, 2000 at 03:25:36PM -0700
References:  <015d01bf57ef$34afcd00$8dfee0d1@westbend.net> <Pine.BSF.4.21.0001051943250.20208-100000@venus.GAIANET.NET> <20000108150504.B76402@physik.TU-Berlin.DE> <387799F8.3182DD68@csocs.com> <387EA9AD.99BB40E6@csocs.com> <019201bf5e51$1f5fd7c0$8dfee0d1@westbend.net> <387FA260.4398E65B@csocs.com>

next in thread | previous in thread | raw e-mail | index | archive | help
On Fri, Jan 14, 2000 at 03:25:36PM -0700, J.C. Frazier wrote:
> On another note.  Another php exploit has been found.
> (http://daily.daemonnews.org/view_story.php3?story_id=498)  No php version
> under php-3.0.14 should be used because of it.  Currently the one in our ports
> use a version which is effected by this bug.  However, the 3.0.14 version has
> some serious problems compiling on systems as shown in their BUGTRAQ.

safe_mode is not enabled by default with apache13-php3. It would
be a poor security setup if you have to rely on safe_mode.

Anyway, I committed a patch for apache13-php3.

-- 
Dirk Froemberg

FreeBSD: The Power to Serve!		http://www.FreeBSD.org/


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-ports" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20000115004132.A76024>