Jump to content

PHP security problem


Nico_ps
 Share

Recommended Posts

Hello:

I have a Mandrake 8.1 with Apache 1.3.22 and PHP 4.0.6-6.1 (the last patch for this version) and when I test my server with a software for security this report a bug in PHP:

 

Buffer Overflow allow external code execution..........

 

My question:

 

Can I update the current PHP version from the that come in Mandrake 9 version ?

 

What packages?

 

Is it secure ?

 

And I like not update my SO version, only PHP.

 

The programs used for test servers are GFI Languard and ShadowScanerSecurity.

 

Thanks for all.

Link to comment
Share on other sites

You might be better off getting the source from php.net and compiling it yourself to be sure. I have no idea of the compatablity

 

http://www.php.net/downloads.php

 

I would recomend going with php 2.2.3 as it is in my opinion much better with access to more functions and better security. though there is a patch there to fix the problem you speak of I think.

 

There should be instructions for compiling in the zip :)

Link to comment
Share on other sites

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.
Note: Your post will require moderator approval before it will be visible.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

Loading...
 Share

×
×
  • Create New...