Jump to content

Advisories MDVSA-2010:058: php


paul
 Share

Recommended Posts

Multiple vulnerabilities has been found and corrected in php:

 

* Improved LCG entropy. (Rasmus, Samy Kamkar)

* Fixed safe_mode validation inside tempnam() when the directory

path does not end with a /). (Martin Jansen)

* Fixed a possible open_basedir/safe_mode bypass in the session

extension identified by Grzegorz Stachowiak. (Ilia)

 

Packages for 2008.0 are provided for Corporate Desktop 2008.0

customers.

 

The updated packages have been patched to correct these issues.

Link to comment
Share on other sites

Guest
This topic is now closed to further replies.
 Share

×
×
  • Create New...