oss-sec mailing list archives

presumptive php sec holes


From: Oden Eriksson <oeriksson () mandriva com>
Date: Mon, 12 Oct 2009 10:57:03 +0200

Hello.

Attached are some php patches that to me looks security related (unknown 
impact). I hope someone with insight can classify and possible assign CVE 
numbers. The patches were taken from their svn repo, so it's "official".

Cheers.
-- 
Regards // Oden Eriksson

Attachment: php-5.3.x-safe_mode_bypass_fix.diff
Description:

Attachment: php-5.2.x-safe_mode_bypass_fix.diff
Description:

Attachment: php-5.2.x-open_basedir_bypass_fix.diff
Description:

Attachment: php-5.3.x-open_basedir_bypass_fix.diff
Description:


Current thread: