Wednesday, June 6, 2007

SANS Internet Storm Center; Cooperative Network Security Community - Internet Security - isc

ISC posted a story about a possible new hole in PHP. Quick summary below, check out their site (and subscribe to their RSS because it's handy!) for links etc. SANS Internet Storm Center; Cooperative Network Security Community - Internet Security - isc:

More PHP Phun
Published: 2007-06-06,
Last Updated: 2007-06-06 03:20:41 UTC
by Chris Carboni (Version: 1)
Jack wrote in to tell us that US-CERT posted the following advisory:

US-CERT is aware of a publicly reported vulnerability in PHP. PHP version 5.2.3 may be vulnerable to an integer overflow within the chunk_split() function.

More information can be found in the following PHP Security Blog.

US-CERT will provide additional information as it becomes available.


Technorati Tags: , ,

No comments:

Post a Comment