LWN.net Logo

php: PATH_TRANSLATED miscalculation

Package(s):php CVE #(s):CVE-2008-0599
Created:May 8, 2008 Updated:July 24, 2008
Description: From the National Vulnerability Database: CVE-2008-0599: cgi_main.c in PHP before 5.2.6 does not properly calculate the length of PATH_TRANSLATED, which has unknown impact and attack vectors.
Alerts:
Ubuntu USN-628-1 2008-07-23
Mandriva MDVSA-2008:128 2008-07-03
Mandriva MDVSA-2008:127 2008-07-03
Red Hat RHSA-2008:0505-01 2008-07-02
Fedora FEDORA-2008-3606 2008-06-20
Fedora FEDORA-2008-3864 2008-06-20
rPath rPSA-2008-0176-1 2008-05-23
Slackware SSA:2008-128-01 2008-05-08

(Log in to post comments)

Copyright © 2008, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds