| /// File Name: | dsa-1572-1.txt | Description:
| Debian Security Advisory 1572-1 - Several vulnerabilities have been discovered in PHP, a server-side, HTML-embedded scripting language. The glob function allows context-dependent attackers to cause a denial of service and possibly execute arbitrary code via an invalid value of the flags parameter. Integer overflow allows context-dependent attackers to cause a denial of service and possibly have other impact via a printf format parameter with a large width specifier. Stack-based buffer overflow in the FastCGI SAPI. The escapeshellcmd API function could be attacked via incomplete multibyte chars. | | Homepage: | http://www.debian.org/security | | File Size: | 40512 | | Related CVE(s): | CVE-2007-3806, CVE-2008-1384, CVE-2008-2050, CVE-2008-2051 | | Last Modified: | May 12 10:39:51 2008 | | MD5 Checksum: | 65c9c530978f313191386160ca68b3a9 |
|