Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 544
Alerts This Week
Warning Icon 1 544

Gentoo: 202304-21 Alert: Python YAML Parsing Vulnerability Detected

gentoo
Calendar Grey July 15, 2005
Scroller Gentoo
Fedora Linux Security Notice warns of potential SQL injection vulnerabilities in WordPress themes. Immediate updates required to maintain system integrity.
PHP includes an XML-RPC implementation which allows remote attackers to execute arbitrary PHP script commands.

Summary

Gentoo Linux Security Advisory GLSA 200507-15 https://security.gentoo.org/ Severity: High Title: PHP: Script injection through XML-RPC Date: July 15, 2005 Bugs: #97655 ID: 200507-15

Synopsis ======= PHP includes an XML-RPC implementation which allows remote attackers to execute arbitrary PHP script commands.
Background ========= PHP is a general-purpose scripting language widely used to develop web-based applications. It can run inside a web server using the mod_php module or the CGI version of PHP, or can run stand-alone in a CLI.
Affected packages ================ ------------------------------------------------------------------- Package / Vulnerable / Unaffected ------------------------------------------------------------------- 1 dev-php/php < 4.4.0 >= 4.4.0
========== James Bercegay has disco...

Read the Full Advisory

Resolution

References

Availability

style>.gentoo_availability{display:block;}

Concerns

Synopsis

Background

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Affected Packages

Impact

Workaround