oss-sec mailing list archives

Re: utf-8 security issue in php


From: Pierre Joye <pierre.php () gmail com>
Date: Sun, 14 Nov 2010 21:30:09 +0100

hi,

The fix has been applied to 5.2 now:

http://svn.php.net/viewvc?view=revision&revision=305055

Cheers,

On Tue, Nov 2, 2010 at 3:24 PM, Josh Bressers <bressers () redhat com> wrote:

----- "Pierre Joye" <pierre.php () gmail com> wrote:

hi,

I was about to ask if any of the documents linked there already has a
CVE.


Another security issue was recently fixed in php-5.3

http://bugs.php.net/bug.php?id=49687
http://svn.php.net/viewvc?view=revision&revision=304959


As best as I can tell, this only needs one ID. Please use CVE-2010-3870.

Thanks.

--
   JB




-- 
Pierre

@pierrejoye | http://blog.thepimp.net | http://www.libgd.org


Current thread: