Alerts This Week
Warning Icon 1 525
Alerts This Week
Warning Icon 1 525

Debian 4.x Security Advisory DSA 531-1 Critical: PHP4 Remote Code Exec

debian
Calendar Grey July 22, 2004
Debian Logo
Critical advisory for PHP4 addresses remote code execution and XSS dangers. Immediate update recommended for Debian.
Patch fixes both a vulnerability to XSS (Cross Site Scripting) and execution of arbitrary local code.

Summary

Two vulnerabilities were discovered in php4:

- CAN-2004-0594 - The memory_limit functionality in PHP 4.x up to
4.3.7, and 5.x up to 5.0.0RC3, under certain conditions such as
when register_globals is enabled, allows remote attackers to
execute arbitrary code by triggering a memory_limit abort during
execution of the zend_hash_init function and overwriting a
HashTable destructor pointer before the initialization of key data
structures is complete.

- CAN-2004-0595 - The strip_tags function in PHP 4.x up to 4.3.7, and
5.x up to 5.0.0RC3, does not filter null (\0) characters within tag
names when restricting input to allowed tags, which allows
dangerous tags to be processed by web browsers such as Internet
Explorer and Safari, which ignore null characters and facilitate
the exploitation of cross-site scripting (XSS) vulnerabilities.

For the current stable distribution (woody), these problems have been
fixed in version 4.1.2-7.

For the unstable distribution (sid), thes...

Read the Full Advisory

Severity
critical
Lowest
Low
Medium
High
Critical

Package: php4

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here