[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

rPSA-2006-0205-1 php php-mysql php-pgsql


rPath Security Advisory: 2006-0205-1
Published: 2006-11-09
Products: rPath Linux 1
Rating: Severe
Exposure Level Classification:
    Remote System User Deterministic Unauthorized Access
Updated Versions:
    php=/suppressed:devel//1/4.3.11-15.8-1
    php-mysql=/suppressed:devel//1/4.3.11-15.8-1
    php-pgsql=/suppressed:devel//1/4.3.11-15.8-1

References:
    http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-5465
    http://issues.rpath.com/browse/RPL-761

Description:
    Previous versions of the php package contain flaws that create
    remote unauthorized access vulnerabilities in many php programs.
    The flaws are in the htmlentities and htmlspecialchars functions.


Mail converted by mhonarc 2.6.15
This archive provided courtesy of JSW4.NET, Internet Hosting Services for Small Business.