[Typo3-german] realurl 1.0.0; T3 3.8.1; apache-mod_php5-5.0.3-14.13

Olivier Dobberkau olivier.dobberkau at dkd.de
Tue Nov 29 11:42:26 CET 2005


Marco Bresch wrote:

> Suse 9.3 hab ich vergessen

Hallo.

hattet ihr gelesen, dass bestimmte funktionen in php durch das security 
update ausgeschaltet werden, bzw nicht mehr funktionieren?

=============== Update Information for php4-52615 (2005-11-17) 
===============
This update fixes the following security issues:  - Bugs in the exif code
could lead to a crash (CVE-2005-3353)  - A bug in parse_str() could lead
to activation of register_globals (CVE-2005-3389)  - File uploads could
overwrite $GLOBALS (CVE-2005-3390)  - session.save_path in a .htaccess file
could crash Apache (CVE-2005-3319)  - open_basedir didn't work correctly
when the value ended in a slash (CVE-2005-3054).  Note: After this update
php4-recode can no longer be used at the same time as php4-mysql, php4-imap
or apache2-mod_auth_mysql due to the RTLD_GLOBAL fixes. Please refer to
/usr/share/doc/packages/php4/README.SuSE for details.


Olivier



More information about the TYPO3-german mailing list