Vulnerability Assessment & Network Security Forums



If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important.  If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery.


Home >> Browse Vulnerability Assessment Database >> Slackware Local Security Checks >> SSA-2005-251-04 php5 in Slackware 10.1


Vulnerability Assessment Details

SSA-2005-251-04 php5 in Slackware 10.1

Vulnerability Assessment Summary
SSA-2005-251-04 php5 in Slackware 10.1

Detailed Explanation for this Vulnerability Assessment

A new php5 package is available for Slackware 10.1 in /testing to fix
security issues. PHP has been relinked with the shared PCRE library
to fix an overflow issue with PHP's builtin PRCE code, and
PEAR::XMLRPC has been upgraded to version 1.4.0 which eliminates the
eval() function. The eval() function is believed to be insecure as
implemented, and would be difficult to secure.

Note that this new package now requires that the PCRE package be
installed, so be sure to get the new package from the patches/packages/
directory if you don't already have it.

More details about these issues may be found in the Common
Vulnerabilities and Exposures (CVE) database:

http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-2491
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-2498



Networks Security ID:

Vulnerability Assessment Copyright: This script is Copyright (C) 2005 Michel Arboi

Cables, Connectors

DELL POWEREDGE R620 10 BAY TWO E5-2680V2 2.80GHZ 32GB 6 X 600GB SSD H710
$3579.0
DELL POWEREDGE R620 10 BAY TWO E5-2680V2 2.80GHZ 32GB 6 X 600GB SSD H710 pictureDELL POWEREDGE R730XD SERVER 12 BAY E5-2660V3 2.6GHZ 384GB 2 X 300GB 15K SAS H73
$9059.0
DELL POWEREDGE R730XD SERVER 12 BAY E5-2660V3 2.6GHZ 384GB 2 X 300GB 15K SAS H73 pictureDELL POWEREDGE R730 8 BAY E5-2623V4 2.6GHZ 96GB 8 X 1.6TB SSD SAS H730
$15139.0
DELL POWEREDGE R730 8 BAY E5-2623V4 2.6GHZ 96GB 8 X 1.6TB SSD SAS H730 pictureDELL POWEREDGE R430 SERVER E5-2697V3 2.6GHZ 96GB 3 X 3TB SAS H730P
$5949.0
DELL POWEREDGE R430 SERVER E5-2697V3 2.6GHZ 96GB 3 X 3TB SAS H730P picture


Discussions

No Discussions have been posted on this vulnerability.