[php-maint] Bug#605571: Please enable pcntl functions

Ondřej Surý ondrej at debian.org
Thu May 26 16:13:38 UTC 2011


Package: libapache2-mod-php5
Severity: normal

Hi Raphael, Sean,

I am enabling the pcntl in CGI module (since it cannot apparently read
the apache2 memory) in the git.

But I was thinking if this poses any security problem for fastcgi or
FPM?  Maybe we could enable it for FPM, and at most it will be able to
read some FPM memory, which just could be prevented by creating more
FPM pools with user separation.

Any thoughts?

O.

-- System Information:
Debian Release: 6.0.1
  APT prefers stable-updates
  APT policy: (500, 'stable-updates'), (500, 'stable')
Architecture: amd64 (x86_64)

Kernel: Linux 2.6.32-5-amd64 (SMP w/4 CPU cores)
Locale: LANG=en_US.UTF-8, LC_CTYPE=cs_CZ.UTF-8 (charmap=UTF-8)
Shell: /bin/sh linked to /bin/dash

Versions of packages libapache2-mod-php5 depends on:
pn  apache2-mpm-prefork | a <none>           (no description available)
pn  apache2.2-common        <none>           (no description available)
ii  libbz2-1.0              1.0.5-6          high-quality block-sorting file co
ii  libc6                   2.11.2-10        Embedded GNU C Library: Shared lib
ii  libcomerr2              1.41.12-2        common error description library
ii  libdb4.8                4.8.30-2         Berkeley v4.8 Database Libraries [
ii  libgssapi-krb5-2        1.8.3+dfsg-4     MIT Kerberos runtime libraries - k
ii  libk5crypto3            1.8.3+dfsg-4     MIT Kerberos runtime libraries - C
ii  libkrb5-3               1.8.3+dfsg-4     MIT Kerberos runtime libraries
ii  libmagic1               5.04-5           File type determination library us
ii  libonig2                5.9.1-1          Oniguruma regular expressions libr
ii  libpcre3                8.02-1.1         Perl 5 Compatible Regular Expressi
ii  libqdbm14               1.8.77-4         QDBM Database Libraries [runtime]
ii  libssl0.9.8             0.9.8o-4squeeze1 SSL shared libraries
ii  libxml2                 2.7.8.dfsg-2     GNOME XML library
ii  mime-support            3.48-1           MIME files 'mime.types' & 'mailcap
ii  php5-common             5.3.3-7+squeeze1 Common files for packages built fr
ii  tzdata                  2011d-0squeeze1  time zone and daylight-saving time
ii  ucf                     3.0025+nmu1      Update Configuration File: preserv
ii  zlib1g                  1:1.2.3.4.dfsg-3 compression library - runtime

Versions of packages libapache2-mod-php5 recommends:
ii  php5-cli                5.3.3-7+squeeze1 command-line interpreter for the p

Versions of packages libapache2-mod-php5 suggests:
ii  php-pear                5.3.3-7+squeeze1 PEAR - PHP Extension and Applicati





More information about the pkg-php-maint mailing list