[php-maint] CVE-2005-3392: vulnerability when using the virtual function on Apache 2

Stefan Fritsch sf at sfritsch.de
Wed Nov 23 19:35:38 UTC 2005


Hi,

do you know whether CVE-2005-3392 also affects PHP5? There seems to be 
only little information about it besides the 4.4.1 changelog.

CVE-2005-3392:
Unspecified vulnerability in PHP before 4.4.1, when using the virtual 
function on Apache 2, allows remote attackers to bypass safe_mode and 
open_basedir directives.


Thanks,
Stefan



More information about the pkg-php-maint mailing list