[php-maint] PCI Vulnerability Scan and PHP4.

William Chipman wchipman at jsatech.com
Mon Dec 17 23:13:14 UTC 2007


We had a scan of our systems for PCI compliance and received warnings 
about PHP 4.4.3-10-22.
I checked the archives and found that the following CVE reports were not 
covered by the comments
leading up to 4.4.3-10-22:
2005-2491
2005-3388
2005-3389
2005-3390 *** Serious and not addressed that I can find. ***

2006-1494
2006-1990
2006-3016
2006-4484

2007-0905
2007-1376
2007-1378
2007-1379
2007-1700
2007-1701
2007-1825
2007-1884
2007-1885
2007-1886
2007-1887
2007-1890
2007-2509
2007-2510
2007-2511

-- 
William D. Chipman
Infrastructure Manager
JSA Technologies, Inc.
201 Main Street, Suite 1320
Fort Worth, Tx. 76102

817-810-2204





More information about the pkg-php-maint mailing list