Secunia - Stay Secure
Gartner
Home Corporate Website Jobs Updated Mailing Lists RSS Blog  Online Shop Advertise
Software Inspectors
  Scan Online
  Personal (PSI)
  Network (NSI 2.0)

Solutions For
  Security Professionals
  Security Vendors

Free Solutions For
  Open Communities
  Journalists & Media

Secunia Advisories
  Search
  Historic Advisories
  Listed By Product
  Listed By Vendor
  Statistics / Graphs
  Secunia Research
  Report Vulnerability
  About Advisories

Virus Information
  Chronological List
  Last 10 Virus Alerts
  About Virus Information

Secunia Customers
  Customer Area


Trustix update for php4 Advisory Available in Danish  Advisory Available in German 

Secunia Advisory: SA24419  
Release Date: 2007-03-09

Critical:
Moderately critical
Impact: Security Bypass
Exposure of sensitive information
DoS
System access
Where: From remote
Solution Status: Vendor Patch

OS:Trustix Secure Linux 2.2


CVE reference:CVE-2007-0905 (Secunia mirror)
CVE-2007-0906 (Secunia mirror)
CVE-2007-0907 (Secunia mirror)
CVE-2007-0908 (Secunia mirror)
CVE-2007-0909 (Secunia mirror)
CVE-2007-0910 (Secunia mirror)
CVE-2007-0988 (Secunia mirror)
CVE-2007-1286 (Secunia mirror)

Want to know the next time vulnerabilities are fixed in this product?
- Companies can be alerted via email and SMS!


Description:
Trustix has issued an update for php4. This fixes some vulnerabilities and a weakness, which can be exploited by malicious people to disclose potentially sensitive information, bypass certain security restrictions, cause a DoS (Denial of Service), and potentially compromise a user's system.

For more information:
SA24089

Solution:
Apply updated packages.

639bde6894ecc53c8cf198a57d86abfa 2.2/rpms/php4-4.4.6-1tr.i586.rpm
87de267da760309c46a7ef2b682fff2b 2.2/rpms/php4-cli-4.4.6-1tr.i586.rpm
180ba74efc954cb4d63d8e613eb9cda8 2.2/rpms/php4-curl-4.4.6-1tr.i586.rpm
3a100aacfd5fdc5a8c79246abfe436cf 2.2/rpms/php4-devel-4.4.6-1tr.i586.rpm
3c9c2b6d34e91997ca9e3c9e1e2bd69d 2.2/rpms/php4-domxml-4.4.6-1tr.i586.rpm
4f6e0cc934aad6fd0d367e6e3f1f083b 2.2/rpms/php4-exif-4.4.6-1tr.i586.rpm
4bb5a6780ce263b7f963c74c0a7c68a4 2.2/rpms/php4-fcgi-4.4.6-1tr.i586.rpm
7b5c1a560fb13ede6508864f929ed2fd 2.2/rpms/php4-gd-4.4.6-1tr.i586.rpm
743a1f4180b61820e202e1a7adc2fbbb 2.2/rpms/php4-imap-4.4.6-1tr.i586.rpm
9dd9d2ab1537a0218467df98d7cc32e7 2.2/rpms/php4-ldap-4.4.6-1tr.i586.rpm
79bfff33013dc930ece67d8411ac5b56 2.2/rpms/php4-mhash-4.4.6-1tr.i586.rpm
adaa356574ff08c2e54db4084950a10d 2.2/rpms/php4-mysql-4.4.6-1tr.i586.rpm
59ba6c4c1d985f17a5a6b49532ff1157 2.2/rpms/php4-pgsql-4.4.6-1tr.i586.rpm
22b3e87e3b97c4b7bf4b7dd5c04c98bf 2.2/rpms/php4-test-4.4.6-1tr.i586.rpm

Original Advisory:
http://www.trustix.org/errata/2007/0009/

Other References:
SA24089:
http://secunia.com/advisories/24089/



Please note: The information that this Secunia Advisory is based on comes from a third party unless stated otherwise.

Secunia collects, validates, and verifies all vulnerability reports issued by security research groups, vendors, and others.

78 Related Secunia Security Advisories, displaying 10

1. Trustix Update for Multiple Packages
2. Trustix Update for Multiple Packages
3. Trustix Update for Multiple Packages
4. Trustix update for kerberos5
5. Trustix update for clamav
6. Trustix Updates for Multiple Packages
7. Trustix Updates for Multiple Packages
8. Trustix update for postgresql
9. Trustix update for freetype and clamav
10. Trustix Updates for Multiple Packages

Show all related advisories


Send Feedback to Secunia

If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.

Ideas, suggestions, and other feedback are most welcome.








Secunia PSI
Scan | Patch | Track
Free Download

Secunia Poll

Do you think it's important to read Setup/User Guides for applications for use within your network?


See Results   


Most Popular Advisories

1.
Mozilla Firefox Multiple Vulnerabilities
2.
Opera for Windows Unspecified Code Execution
3.
VLC Media Player WAV Processing Integer Overflow
4.
Mozilla Thunderbird Multiple Vulnerabilities
5.
Opera Canvas Functions Information Disclosure
6.
PCRE pcre_compile.c Buffer Overflow Vulnerability
7.
Novell eDirectory ds.dlm Module Buffer Overflow
8.
Drupal Organic groups Information Disclosure and Script Insertion
9.
UnixWare ReliantHA Privilege Escalation Vulnerabilities
10.
XchangeBoard "boardID" SQL Injection Vulnerability





Vulnerability Management - Terms & Conditions - Copyright 2002-2008 Secunia - Compliance - Contact Secunia