PHP new vulnarabilities

Robert Joosten robert at ml.erje.net
Sun Oct 15 05:49:03 PDT 2006


Hi Khaled,

> Affected package: php5-5.1.6
> Type of problem: php -- _ecalloc Integer Overflow Vulnerability.
> <http://www.FreeBSD.org/ports/portaudit/e329550b-54f7-11db-a5ae-00508d6a62df.html>
> how can i fix this

Compile php from source after applying 
http://www.hardened-php.net/files/CVE-2006-4812.patch ?

I dodn't deploy 5 yet, but maybe an other fix is underway ?

Hth.

Regards,
Robert


More information about the freebsd-questions mailing list