Secunia Logo
Netsikker nu! 2008
 
Trustix update for php4
Secunia Advisory: SA24419
Release Date: 2007-03-09
Popularity: 5,784 views

Critical:
Moderately critical
Impact: Security Bypass
Exposure of sensitive information
DoS
System access
Where: From remote
Solution Status: Vendor Patch

OS:Trustix Secure Linux 2.2

Subscribe: Instant alerts on relevant vulnerabilities

CVE reference:CVE-2007-0905
CVE-2007-0906
CVE-2007-0907
CVE-2007-0908
CVE-2007-0909
CVE-2007-0910
CVE-2007-0988
CVE-2007-1286


Description:
Trustix has issued an update for php4. This fixes some vulnerabilities and a weakness, which can be exploited by malicious people to disclose potentially sensitive information, bypass certain security restrictions, cause a DoS (Denial of Service), and potentially compromise a user's system.

For more information:
SA24089

Solution:
Apply updated packages.

639bde6894ecc53c8cf198a57d86abfa 2.2/rpms/php4-4.4.6-1tr.i586.rpm
87de267da760309c46a7ef2b682fff2b 2.2/rpms/php4-cli-4.4.6-1tr.i586.rpm
180ba74efc954cb4d63d8e613eb9cda8 2.2/rpms/php4-curl-4.4.6-1tr.i586.rpm
3a100aacfd5fdc5a8c79246abfe436cf 2.2/rpms/php4-devel-4.4.6-1tr.i586.rpm
3c9c2b6d34e91997ca9e3c9e1e2bd69d 2.2/rpms/php4-domxml-4.4.6-1tr.i586.rpm
4f6e0cc934aad6fd0d367e6e3f1f083b 2.2/rpms/php4-exif-4.4.6-1tr.i586.rpm
4bb5a6780ce263b7f963c74c0a7c68a4 2.2/rpms/php4-fcgi-4.4.6-1tr.i586.rpm
7b5c1a560fb13ede6508864f929ed2fd 2.2/rpms/php4-gd-4.4.6-1tr.i586.rpm
743a1f4180b61820e202e1a7adc2fbbb 2.2/rpms/php4-imap-4.4.6-1tr.i586.rpm
9dd9d2ab1537a0218467df98d7cc32e7 2.2/rpms/php4-ldap-4.4.6-1tr.i586.rpm
79bfff33013dc930ece67d8411ac5b56 2.2/rpms/php4-mhash-4.4.6-1tr.i586.rpm
adaa356574ff08c2e54db4084950a10d 2.2/rpms/php4-mysql-4.4.6-1tr.i586.rpm
59ba6c4c1d985f17a5a6b49532ff1157 2.2/rpms/php4-pgsql-4.4.6-1tr.i586.rpm
22b3e87e3b97c4b7bf4b7dd5c04c98bf 2.2/rpms/php4-test-4.4.6-1tr.i586.rpm

Original Advisory:
http://www.trustix.org/errata/2007/0009/

Other References:
SA24089:
http://secunia.com/advisories/24089/


Track this Secunia Advisory
Customers of the Secunia Vulnerability Intelligence solutions will automatically receive updates when new information regarding this advisory is released.

Read more about our Vulnerability Intelligence solutions and what they can do for you and your company.

About this Secunia Advisory
Please note: The information that this Secunia Advisory is based on comes from a third party unless stated otherwise.

Secunia collects, validates, and verifies all vulnerability reports issued by security research groups, vendors, and others.
  
Latest Advisories

Today
New advisories: 9
New vulnerabilities: 32
Updated advisories: 12

Highly // 155 views
Opera Multiple Vulnerabilities
Moderately // 102 views
Red Hat update for condor
Moderately // 98 views
Condor Multiple Vulnerabilities
Moderately // 115 views
Gentoo update for wordnet
Moderately // 135 views
Red Hat update for kernel

7th Oct, 2008
New advisories: 19
New vulnerabilities: 68
Updated advisories: 61

Moderately // 483 views
Debian update for php5

Solutions | More...  


Send Feedback to Secunia
If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.

Ideas, suggestions, and other feedback are most welcome.

Most Popular - 3 Hours

1. Adobe Flash Player "Clickjacking" Security Bypass Vulnerability // 181 views
2. Opera Multiple Vulnerabilities // 139 views
3. Red Hat update for kernel // 111 views
4. Hero DVD Player M3U Processing Buffer Overflow Vulnerability // 94 views
5. Red Hat update for condor // 93 views
6. Gentoo update for wordnet // 91 views
7. Condor Multiple Vulnerabilities // 91 views
8. PHP Realtor "v_cat" SQL Injection Vulnerability // 74 views
9. Debian update for php5 // 40 views
10. Atarone CMS Multiple Vulnerabilities // 27 views