Re: [e-smith-devinfo] Multiple Remote Vulnerabilities within PHP's file upload code

2002-02-28 Thread Darrell May
Peter Samuel <[EMAIL PROTECTED]> said: > The developers of PHP have released details regarding a vulnerability with > all versions of PHP prior to their current development stream 4.2.0-dev. > Should we not look to installing http://rpms.arvin.dk/php/rh71/ PHP 4 RPMs which states: The PHP 4.0

[e-smith-devinfo] Multiple Remote Vulnerabilities within PHP's file upload code

2002-02-28 Thread Peter Samuel
The developers of PHP have released details regarding a vulnerability with all versions of PHP prior to their current development stream 4.2.0-dev. Details of this vulnerability may be seen at http://security.e-matters.de/advisories/012002.html or http://lwn.net/daily/php-upload.php3