Re: PHP Vulnerabilities and Suhosin

2006-10-08 Thread Andrew Pantyukhin
On 10/6/06, Alex Dupre [EMAIL PROTECTED] wrote: Andrew Pantyukhin ha scritto: I've noticed we have WITH_SUHOSIN option. It may alleviate some security issues. In particular, suhosin 0.9.6 fixes this latest issue. Can we somehow make this option influence PKGNAME (suffix, prefix, version or

Re: PHP Vulnerabilities and Suhosin

2006-10-08 Thread Alex Dupre
Andrew Pantyukhin ha scritto: I think we should mark suhosin 0.9.5 as vulnerable to encourage an upgrade (in the same advisory). What do you think? Even if not properly correct, it could be a simple way to encourage updating. Ok. -- Alex Dupre ___

Re: PHP Vulnerabilities and Suhosin

2006-10-05 Thread Andrew Pantyukhin
On 10/6/06, Alex Dupre [EMAIL PROTECTED] wrote: Andrew Pantyukhin ha scritto: I've noticed we have WITH_SUHOSIN option. It may alleviate some security issues. In particular, suhosin 0.9.6 fixes this latest issue. Can we somehow make this option influence PKGNAME (suffix, prefix, version or