Security Trends

Discover Security Projects News

---------------------------------------------------------------------Fedora Update Notification
FEDORA-2005-810
2005-08-25
---------------------------------------------------------------------Product     : Fedora Core 4
Name        : php
Version     : 5.0.4                      
Release     : 10.4                  
Summary     : The PHP HTML-embedded scripting language. (PHP: Hypertext Preprocessor)
Description :
PHP is an HTML-embedded scripting language. PHP attempts to make it
easy for developers to write dynamically generated webpages. PHP also
offers built-in database integration for several commercial and
non-commercial database management systems, so writing a
database-enabled webpage with PHP is fairly simple. The most common
use of PHP coding is probably as a replacement for CGI scripts. The
mod_php module enables the Apache Web server to understand and process
the embedded PHP language in Web pages.

---------------------------------------------------------------------Update Information:

This update includes the latest upstream version of the PEAR
XML_RPC package, which fixes a security issue in request
parsing in the XML_RPC Server code.  The Common
Vulnerabilities and Exposures project (cve.mitre.org) has
assigned the name CAN-2005-2498 to this issue.
---------------------------------------------------------------------* Mon Aug 15 2005 Joe Orton  5.0.4-10.4
- pear: update to XML_RPC 1.4.0 (CAN-2005-2498, #165847)
- use /etc/httpd/conf/magic for mime_magic (#163116)


---------------------------------------------------------------------This update can be downloaded from:
  
fe38143c01170f7ee26dca074b193280  SRPMS/php-5.0.4-10.4.src.rpm
929c91fd6d06f91135ac1809aca3920e  ppc/php-5.0.4-10.4.ppc.rpm
665ac2279a8a5fad648d4ed212cbe2b4  ppc/php-devel-5.0.4-10.4.ppc.rpm
7d0a95bf294d1214ba99dfa6e5999b6c  ppc/php-pear-5.0.4-10.4.ppc.rpm
039976e7c06a716f178ea9d1e1af4952  ppc/php-imap-5.0.4-10.4.ppc.rpm
4fd6e3191bf61efa0b26ea3cabe6092c  ppc/php-ldap-5.0.4-10.4.ppc.rpm
d305c37182e03226c02e20350f83892e  ppc/php-mysql-5.0.4-10.4.ppc.rpm
8d690e21921beba761d1fcd581f91b45  ppc/php-pgsql-5.0.4-10.4.ppc.rpm
2c314bbc75a08da08468a1bb57271c71  ppc/php-odbc-5.0.4-10.4.ppc.rpm
9d60e31b08804d0e341af41f82dd8c0e  ppc/php-soap-5.0.4-10.4.ppc.rpm
cbffc98a6b79ce877c2b394c287e3522  ppc/php-snmp-5.0.4-10.4.ppc.rpm
5df40de2f6fdcdf9003fba27100ef5d5  ppc/php-xml-5.0.4-10.4.ppc.rpm
c14979cd059c316cecbd75952ed757b5  ppc/php-xmlrpc-5.0.4-10.4.ppc.rpm
8f5fd0034bbc23d8c8f0e590a47035dc  ppc/php-mbstring-5.0.4-10.4.ppc.rpm
91f583e0d4283d36e18b51dd852bd9b0  ppc/php-ncurses-5.0.4-10.4.ppc.rpm
b2a9320837449b106d6ac9f8a8f6e996  ppc/php-gd-5.0.4-10.4.ppc.rpm
c33d579a1094ee6730c1fe6af09b23a0  ppc/php-bcmath-5.0.4-10.4.ppc.rpm
62b45095119390fa2a35ddc13e27d46b  ppc/php-dba-5.0.4-10.4.ppc.rpm
aa3cfa523a77f6dd85343b9412f0cedc  ppc/debug/php-debuginfo-5.0.4-10.4.ppc.rpm
26556e8667778b59a15cdc25bc84a957  x86_64/php-5.0.4-10.4.x86_64.rpm
6bf32e3c1324e61de1462a78de689cdf  x86_64/php-devel-5.0.4-10.4.x86_64.rpm
0abfae49cfdaf5814c33209b05b1a544  x86_64/php-pear-5.0.4-10.4.x86_64.rpm
84c963007c603e94c6c3522ccf2b842e  x86_64/php-imap-5.0.4-10.4.x86_64.rpm
fc0a1456aa4c979a620b126f4f7fb9ef  x86_64/php-ldap-5.0.4-10.4.x86_64.rpm
ab4fd99ebf4e7c10c7685f9352b554b0  x86_64/php-mysql-5.0.4-10.4.x86_64.rpm
38fc2645debd8aecce858f27522a8188  x86_64/php-pgsql-5.0.4-10.4.x86_64.rpm
c4b8800e63a5da0b1a6f576a1ca3cd8a  x86_64/php-odbc-5.0.4-10.4.x86_64.rpm
c6aecaf60eadbd13e40c1401ca6abf2b  x86_64/php-soap-5.0.4-10.4.x86_64.rpm
738f3918427bf2999a9410ad43d08622  x86_64/php-snmp-5.0.4-10.4.x86_64.rpm
a9af554aff90e068ab29e016156901da  x86_64/php-xml-5.0.4-10.4.x86_64.rpm
7a4fcf7cc3a3390efccd4ed0519dbd8d  x86_64/php-xmlrpc-5.0.4-10.4.x86_64.rpm
d5a9ad5133b2b5a5c33baf54422af0f3  x86_64/php-mbstring-5.0.4-10.4.x86_64.rpm
c6c93b0fde415f50d3ecc8f5a0aa9052  x86_64/php-ncurses-5.0.4-10.4.x86_64.rpm
c79d1ebcb411451bbdc1eae4d68d0673  x86_64/php-gd-5.0.4-10.4.x86_64.rpm
617ee8bbf62e92b1a42073ac13c67cb1  x86_64/php-bcmath-5.0.4-10.4.x86_64.rpm
62f8ea4cdf82db2a4c4562b45bb1b9e2  x86_64/php-dba-5.0.4-10.4.x86_64.rpm
0731bebeec174b81454f332e66d77d6c  x86_64/debug/php-debuginfo-5.0.4-10.4.x86_64.rpm
9ef6e2a3f67be0b14db4dbec4e157032  i386/php-5.0.4-10.4.i386.rpm
19908abb1f9b93a86f5ec07fc9dcb5c1  i386/php-devel-5.0.4-10.4.i386.rpm
8006deba80affa8407ccaaf03a461afa  i386/php-pear-5.0.4-10.4.i386.rpm
d96f3a81a215dc16d299db1e175b4eb7  i386/php-imap-5.0.4-10.4.i386.rpm
7baed49e9b3fab6102ca7d0dd449cc37  i386/php-ldap-5.0.4-10.4.i386.rpm
e918a457273a710834c1e4b4abcdcecf  i386/php-mysql-5.0.4-10.4.i386.rpm
b843122aad7954b79d1f34f658838b5f  i386/php-pgsql-5.0.4-10.4.i386.rpm
85fa86a30159676d97e915bc4747a1ba  i386/php-odbc-5.0.4-10.4.i386.rpm
79b9b45b05efd7b77f4ce8d44a563d98  i386/php-soap-5.0.4-10.4.i386.rpm
eb00673044f03300758fa3e8d337fa10  i386/php-snmp-5.0.4-10.4.i386.rpm
3f8f28c632adc9daf4175eb4a3e69ad4  i386/php-xml-5.0.4-10.4.i386.rpm
8377ac103221b019f1b935a476a392eb  i386/php-xmlrpc-5.0.4-10.4.i386.rpm
4ab80eb682f39a60f12e47d26dfcf404  i386/php-mbstring-5.0.4-10.4.i386.rpm
49fbd501244ac289b968acb2aa1a114b  i386/php-ncurses-5.0.4-10.4.i386.rpm
302a2b807f8ec38d8076ab451677a50f  i386/php-gd-5.0.4-10.4.i386.rpm
31200336bccb48e549248b9376b88b0f  i386/php-bcmath-5.0.4-10.4.i386.rpm
c25ad5eb9d33379b0965428b84febbde  i386/php-dba-5.0.4-10.4.i386.rpm
d7fd702bb4034aec07850080e53d54df  i386/debug/php-debuginfo-5.0.4-10.4.i386.rpm

This update can also be installed with the Update Agent; you can
launch the Update Agent with the 'up2date' command.  
----------------------------------------------------------------------- 
fedora-announce-list mailing list
fedora-announce-list@redhat.com
http://www.redhat.com/mailman/listinfo/fedora-announce-list

Fedora Core 4 Update: php-5.0.4-10.4

August 25, 2005
This update includes the latest upstream version of the PEAR XML_RPC package, which fixes a security issue in request parsing in the XML_RPC Server code

Summary

PHP is an HTML-embedded scripting language. PHP attempts to make it

easy for developers to write dynamically generated webpages. PHP also

offers built-in database integration for several commercial and

non-commercial database management systems, so writing a

database-enabled webpage with PHP is fairly simple. The most common

use of PHP coding is probably as a replacement for CGI scripts. The

mod_php module enables the Apache Web server to understand and process

the embedded PHP language in Web pages.

This update includes the latest upstream version of the PEAR

XML_RPC package, which fixes a security issue in request

parsing in the XML_RPC Server code. The Common

Vulnerabilities and Exposures project (cve.mitre.org) has

assigned the name CAN-2005-2498 to this issue.

- pear: update to XML_RPC 1.4.0 (CAN-2005-2498, #165847)

- use /etc/httpd/conf/magic for mime_magic (#163116)

fe38143c01170f7ee26dca074b193280 SRPMS/php-5.0.4-10.4.src.rpm

929c91fd6d06f91135ac1809aca3920e ppc/php-5.0.4-10.4.ppc.rpm

665ac2279a8a5fad648d4ed212cbe2b4 ppc/php-devel-5.0.4-10.4.ppc.rpm

7d0a95bf294d1214ba99dfa6e5999b6c ppc/php-pear-5.0.4-10.4.ppc.rpm

039976e7c06a716f178ea9d1e1af4952 ppc/php-imap-5.0.4-10.4.ppc.rpm

4fd6e3191bf61efa0b26ea3cabe6092c ppc/php-ldap-5.0.4-10.4.ppc.rpm

d305c37182e03226c02e20350f83892e ppc/php-mysql-5.0.4-10.4.ppc.rpm

8d690e21921beba761d1fcd581f91b45 ppc/php-pgsql-5.0.4-10.4.ppc.rpm

2c314bbc75a08da08468a1bb57271c71 ppc/php-odbc-5.0.4-10.4.ppc.rpm

9d60e31b08804d0e341af41f82dd8c0e ppc/php-soap-5.0.4-10.4.ppc.rpm

cbffc98a6b79ce877c2b394c287e3522 ppc/php-snmp-5.0.4-10.4.ppc.rpm

5df40de2f6fdcdf9003fba27100ef5d5 ppc/php-xml-5.0.4-10.4.ppc.rpm

c14979cd059c316cecbd75952ed757b5 ppc/php-xmlrpc-5.0.4-10.4.ppc.rpm

8f5fd0034bbc23d8c8f0e590a47035dc ppc/php-mbstring-5.0.4-10.4.ppc.rpm

91f583e0d4283d36e18b51dd852bd9b0 ppc/php-ncurses-5.0.4-10.4.ppc.rpm

b2a9320837449b106d6ac9f8a8f6e996 ppc/php-gd-5.0.4-10.4.ppc.rpm

c33d579a1094ee6730c1fe6af09b23a0 ppc/php-bcmath-5.0.4-10.4.ppc.rpm

62b45095119390fa2a35ddc13e27d46b ppc/php-dba-5.0.4-10.4.ppc.rpm

aa3cfa523a77f6dd85343b9412f0cedc ppc/debug/php-debuginfo-5.0.4-10.4.ppc.rpm

26556e8667778b59a15cdc25bc84a957 x86_64/php-5.0.4-10.4.x86_64.rpm

6bf32e3c1324e61de1462a78de689cdf x86_64/php-devel-5.0.4-10.4.x86_64.rpm

0abfae49cfdaf5814c33209b05b1a544 x86_64/php-pear-5.0.4-10.4.x86_64.rpm

84c963007c603e94c6c3522ccf2b842e x86_64/php-imap-5.0.4-10.4.x86_64.rpm

fc0a1456aa4c979a620b126f4f7fb9ef x86_64/php-ldap-5.0.4-10.4.x86_64.rpm

ab4fd99ebf4e7c10c7685f9352b554b0 x86_64/php-mysql-5.0.4-10.4.x86_64.rpm

38fc2645debd8aecce858f27522a8188 x86_64/php-pgsql-5.0.4-10.4.x86_64.rpm

c4b8800e63a5da0b1a6f576a1ca3cd8a x86_64/php-odbc-5.0.4-10.4.x86_64.rpm

c6aecaf60eadbd13e40c1401ca6abf2b x86_64/php-soap-5.0.4-10.4.x86_64.rpm

738f3918427bf2999a9410ad43d08622 x86_64/php-snmp-5.0.4-10.4.x86_64.rpm

a9af554aff90e068ab29e016156901da x86_64/php-xml-5.0.4-10.4.x86_64.rpm

7a4fcf7cc3a3390efccd4ed0519dbd8d x86_64/php-xmlrpc-5.0.4-10.4.x86_64.rpm

d5a9ad5133b2b5a5c33baf54422af0f3 x86_64/php-mbstring-5.0.4-10.4.x86_64.rpm

c6c93b0fde415f50d3ecc8f5a0aa9052 x86_64/php-ncurses-5.0.4-10.4.x86_64.rpm

c79d1ebcb411451bbdc1eae4d68d0673 x86_64/php-gd-5.0.4-10.4.x86_64.rpm

617ee8bbf62e92b1a42073ac13c67cb1 x86_64/php-bcmath-5.0.4-10.4.x86_64.rpm

62f8ea4cdf82db2a4c4562b45bb1b9e2 x86_64/php-dba-5.0.4-10.4.x86_64.rpm

0731bebeec174b81454f332e66d77d6c x86_64/debug/php-debuginfo-5.0.4-10.4.x86_64.rpm

9ef6e2a3f67be0b14db4dbec4e157032 i386/php-5.0.4-10.4.i386.rpm

19908abb1f9b93a86f5ec07fc9dcb5c1 i386/php-devel-5.0.4-10.4.i386.rpm

8006deba80affa8407ccaaf03a461afa i386/php-pear-5.0.4-10.4.i386.rpm

d96f3a81a215dc16d299db1e175b4eb7 i386/php-imap-5.0.4-10.4.i386.rpm

7baed49e9b3fab6102ca7d0dd449cc37 i386/php-ldap-5.0.4-10.4.i386.rpm

e918a457273a710834c1e4b4abcdcecf i386/php-mysql-5.0.4-10.4.i386.rpm

b843122aad7954b79d1f34f658838b5f i386/php-pgsql-5.0.4-10.4.i386.rpm

85fa86a30159676d97e915bc4747a1ba i386/php-odbc-5.0.4-10.4.i386.rpm

79b9b45b05efd7b77f4ce8d44a563d98 i386/php-soap-5.0.4-10.4.i386.rpm

eb00673044f03300758fa3e8d337fa10 i386/php-snmp-5.0.4-10.4.i386.rpm

3f8f28c632adc9daf4175eb4a3e69ad4 i386/php-xml-5.0.4-10.4.i386.rpm

8377ac103221b019f1b935a476a392eb i386/php-xmlrpc-5.0.4-10.4.i386.rpm

4ab80eb682f39a60f12e47d26dfcf404 i386/php-mbstring-5.0.4-10.4.i386.rpm

49fbd501244ac289b968acb2aa1a114b i386/php-ncurses-5.0.4-10.4.i386.rpm

302a2b807f8ec38d8076ab451677a50f i386/php-gd-5.0.4-10.4.i386.rpm

31200336bccb48e549248b9376b88b0f i386/php-bcmath-5.0.4-10.4.i386.rpm

c25ad5eb9d33379b0965428b84febbde i386/php-dba-5.0.4-10.4.i386.rpm

d7fd702bb4034aec07850080e53d54df i386/debug/php-debuginfo-5.0.4-10.4.i386.rpm

This update can also be installed with the Update Agent; you can

launch the Update Agent with the 'up2date' command.

fedora-announce-list mailing list

fedora-announce-list@redhat.com

http://www.redhat.com/mailman/listinfo/fedora-announce-list

FEDORA-2005-810 2005-08-25 Name : php Version : 5.0.4 Release : 10.4 Summary : The PHP HTML-embedded scripting language. (PHP: Hypertext Preprocessor) Description : PHP is an HTML-embedded scripting language. PHP attempts to make it easy for developers to write dynamically generated webpages. PHP also offers built-in database integration for several commercial and non-commercial database management systems, so writing a database-enabled webpage with PHP is fairly simple. The most common use of PHP coding is probably as a replacement for CGI scripts. The mod_php module enables the Apache Web server to understand and process the embedded PHP language in Web pages. This update includes the latest upstream version of the PEAR XML_RPC package, which fixes a security issue in request parsing in the XML_RPC Server code. The Common Vulnerabilities and Exposures project (cve.mitre.org) has assigned the name CAN-2005-2498 to this issue. - pear: update to XML_RPC 1.4.0 (CAN-2005-2498, #165847) - use /etc/httpd/conf/magic for mime_magic (#163116) fe38143c01170f7ee26dca074b193280 SRPMS/php-5.0.4-10.4.src.rpm 929c91fd6d06f91135ac1809aca3920e ppc/php-5.0.4-10.4.ppc.rpm 665ac2279a8a5fad648d4ed212cbe2b4 ppc/php-devel-5.0.4-10.4.ppc.rpm 7d0a95bf294d1214ba99dfa6e5999b6c ppc/php-pear-5.0.4-10.4.ppc.rpm 039976e7c06a716f178ea9d1e1af4952 ppc/php-imap-5.0.4-10.4.ppc.rpm 4fd6e3191bf61efa0b26ea3cabe6092c ppc/php-ldap-5.0.4-10.4.ppc.rpm d305c37182e03226c02e20350f83892e ppc/php-mysql-5.0.4-10.4.ppc.rpm 8d690e21921beba761d1fcd581f91b45 ppc/php-pgsql-5.0.4-10.4.ppc.rpm 2c314bbc75a08da08468a1bb57271c71 ppc/php-odbc-5.0.4-10.4.ppc.rpm 9d60e31b08804d0e341af41f82dd8c0e ppc/php-soap-5.0.4-10.4.ppc.rpm cbffc98a6b79ce877c2b394c287e3522 ppc/php-snmp-5.0.4-10.4.ppc.rpm 5df40de2f6fdcdf9003fba27100ef5d5 ppc/php-xml-5.0.4-10.4.ppc.rpm c14979cd059c316cecbd75952ed757b5 ppc/php-xmlrpc-5.0.4-10.4.ppc.rpm 8f5fd0034bbc23d8c8f0e590a47035dc ppc/php-mbstring-5.0.4-10.4.ppc.rpm 91f583e0d4283d36e18b51dd852bd9b0 ppc/php-ncurses-5.0.4-10.4.ppc.rpm b2a9320837449b106d6ac9f8a8f6e996 ppc/php-gd-5.0.4-10.4.ppc.rpm c33d579a1094ee6730c1fe6af09b23a0 ppc/php-bcmath-5.0.4-10.4.ppc.rpm 62b45095119390fa2a35ddc13e27d46b ppc/php-dba-5.0.4-10.4.ppc.rpm aa3cfa523a77f6dd85343b9412f0cedc ppc/debug/php-debuginfo-5.0.4-10.4.ppc.rpm 26556e8667778b59a15cdc25bc84a957 x86_64/php-5.0.4-10.4.x86_64.rpm 6bf32e3c1324e61de1462a78de689cdf x86_64/php-devel-5.0.4-10.4.x86_64.rpm 0abfae49cfdaf5814c33209b05b1a544 x86_64/php-pear-5.0.4-10.4.x86_64.rpm 84c963007c603e94c6c3522ccf2b842e x86_64/php-imap-5.0.4-10.4.x86_64.rpm fc0a1456aa4c979a620b126f4f7fb9ef x86_64/php-ldap-5.0.4-10.4.x86_64.rpm ab4fd99ebf4e7c10c7685f9352b554b0 x86_64/php-mysql-5.0.4-10.4.x86_64.rpm 38fc2645debd8aecce858f27522a8188 x86_64/php-pgsql-5.0.4-10.4.x86_64.rpm c4b8800e63a5da0b1a6f576a1ca3cd8a x86_64/php-odbc-5.0.4-10.4.x86_64.rpm c6aecaf60eadbd13e40c1401ca6abf2b x86_64/php-soap-5.0.4-10.4.x86_64.rpm 738f3918427bf2999a9410ad43d08622 x86_64/php-snmp-5.0.4-10.4.x86_64.rpm a9af554aff90e068ab29e016156901da x86_64/php-xml-5.0.4-10.4.x86_64.rpm 7a4fcf7cc3a3390efccd4ed0519dbd8d x86_64/php-xmlrpc-5.0.4-10.4.x86_64.rpm d5a9ad5133b2b5a5c33baf54422af0f3 x86_64/php-mbstring-5.0.4-10.4.x86_64.rpm c6c93b0fde415f50d3ecc8f5a0aa9052 x86_64/php-ncurses-5.0.4-10.4.x86_64.rpm c79d1ebcb411451bbdc1eae4d68d0673 x86_64/php-gd-5.0.4-10.4.x86_64.rpm 617ee8bbf62e92b1a42073ac13c67cb1 x86_64/php-bcmath-5.0.4-10.4.x86_64.rpm 62f8ea4cdf82db2a4c4562b45bb1b9e2 x86_64/php-dba-5.0.4-10.4.x86_64.rpm 0731bebeec174b81454f332e66d77d6c x86_64/debug/php-debuginfo-5.0.4-10.4.x86_64.rpm 9ef6e2a3f67be0b14db4dbec4e157032 i386/php-5.0.4-10.4.i386.rpm 19908abb1f9b93a86f5ec07fc9dcb5c1 i386/php-devel-5.0.4-10.4.i386.rpm 8006deba80affa8407ccaaf03a461afa i386/php-pear-5.0.4-10.4.i386.rpm d96f3a81a215dc16d299db1e175b4eb7 i386/php-imap-5.0.4-10.4.i386.rpm 7baed49e9b3fab6102ca7d0dd449cc37 i386/php-ldap-5.0.4-10.4.i386.rpm e918a457273a710834c1e4b4abcdcecf i386/php-mysql-5.0.4-10.4.i386.rpm b843122aad7954b79d1f34f658838b5f i386/php-pgsql-5.0.4-10.4.i386.rpm 85fa86a30159676d97e915bc4747a1ba i386/php-odbc-5.0.4-10.4.i386.rpm 79b9b45b05efd7b77f4ce8d44a563d98 i386/php-soap-5.0.4-10.4.i386.rpm eb00673044f03300758fa3e8d337fa10 i386/php-snmp-5.0.4-10.4.i386.rpm 3f8f28c632adc9daf4175eb4a3e69ad4 i386/php-xml-5.0.4-10.4.i386.rpm 8377ac103221b019f1b935a476a392eb i386/php-xmlrpc-5.0.4-10.4.i386.rpm 4ab80eb682f39a60f12e47d26dfcf404 i386/php-mbstring-5.0.4-10.4.i386.rpm 49fbd501244ac289b968acb2aa1a114b i386/php-ncurses-5.0.4-10.4.i386.rpm 302a2b807f8ec38d8076ab451677a50f i386/php-gd-5.0.4-10.4.i386.rpm 31200336bccb48e549248b9376b88b0f i386/php-bcmath-5.0.4-10.4.i386.rpm c25ad5eb9d33379b0965428b84febbde i386/php-dba-5.0.4-10.4.i386.rpm d7fd702bb4034aec07850080e53d54df i386/debug/php-debuginfo-5.0.4-10.4.i386.rpm This update can also be installed with the Update Agent; you can launch the Update Agent with the 'up2date' command. fedora-announce-list mailing list fedora-announce-list@redhat.com http://www.redhat.com/mailman/listinfo/fedora-announce-list

Change Log

References

Update Instructions

Severity
Name : php
Version : 5.0.4
Release : 10.4
Summary : The PHP HTML-embedded scripting language. (PHP: Hypertext Preprocessor)

Related News