[php-maint] Bug#540606: php5: 'open_basedir' bypass

Michael S. Gilbert michael.s.gilbert at gmail.com
Sun Aug 9 04:37:38 UTC 2009


package: php5
version: 5.3.0
severity: important
tags: security , patch

it has been disclosed that php is potentially vulnerable to an
'open_basedir' bypass [0]. the advisory says that only 5.3.0 is
affected, but it would be useful to check that older versions
are safe.

[0]
http://securityreason.com/achievement_securityalert/64





More information about the pkg-php-maint mailing list