Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 542
Alerts This Week
Warning Icon 1 542

Ubuntu 11.10 Security Advisory 1231-1: Critical PHP Buffer Overflow

ubuntu
Calendar Grey October 18, 2011
Scroller Ubuntu
Various security flaws in PHP disclosed by Ubuntu have the potential to result in remote code execution or service disruption.
Several security issues were fixed in PHP.

Summary

Several security issues were fixed in PHP.

Software Description:

- php5: HTML-embedded scripting language interpreter

Details:

Mateusz Kocielski, Marek Kroemeke and Filip Palian discovered that a

stack-based buffer overflow existed in the socket_connect function's

handling of long pathnames for AF_UNIX sockets. A remote attacker

might be able to exploit this to execute arbitrary code; however,

the default compiler options for affected releases should reduce

the vulnerability to a denial of service. This issue affected Ubuntu

10.04 LTS, Ubuntu 10.10 and Ubuntu 11.04. (CVE-2011-1938)

Krzysztof Kotowicz discovered that the PHP post handler function

does not properly restrict filenames in multipart/form-data POST

requests. This may allow remote attackers to conduct absolute

path traversal attacks and possibly create or overwrite arbitrary

files. This issue affected Ubuntu 8.04 LTS, Ubuntu 10.04 LTS, Ubuntu

10.10 and Ubuntu 11.04. (CVE-2011-2202)

It was discovered that the crypt fu...

Read the Full Advisory

Update Instructions

The problem can be corrected by updating your system to the following
package versions:

Ubuntu 11.10:
  libapache2-mod-php5             5.3.6-13ubuntu3.2
  php5-cgi                        5.3.6-13ubuntu3.2
  php5-cli                        5.3.6-13ubuntu3.2
  php5-common                     5.3.6-13ubuntu3.2

Ubuntu 11.04:
  libapache2-mod-php5             5.3.5-1ubuntu7.3
  php5-cgi                        5.3.5-1ubuntu7.3
  php5-cli                        5.3.5-1ubuntu7.3
  php5-common                     5.3.5-1ubuntu7.3

Ubuntu 10.10:
  libapache2-mod-php5             5.3.3-1ubuntu9.6
  php5-cgi                        5.3.3-1ubuntu9.6
  php5-cli                        5.3.3-1ubuntu9.6
  php5-common                     5.3.3-1ubuntu9.6

Ubuntu 10.04 LTS:
  libapache2-mod-php5             5.3.2-1ubuntu4.10
  php5-cgi                        5.3.2-1ubuntu4.10
  php5-cli                        5.3.2-1ubuntu4.10
  php5-common                     5.3.2-1ubuntu4.10

Ubuntu 8.04 LTS:
  libapache2-mod-php5             5.2.4-2ubuntu5.18
  php5-cgi                        5.2.4-2ubuntu5.18
  php5-cli                        5.2.4-2ubuntu5.18
  php5-common                     5.2.4-2ubuntu5.18

In general, a standard system update will make all the necessary changes.

References

https://ubuntu.com/security/notices/USN-1231-1

CVE-2010-1914, CVE-2010-2484, CVE-2011-1657, CVE-2011-1938,

CVE-2011-2202, CVE-2011-2483, CVE-2011-3182, CVE-2011-3267

Severity
critical
Lowest
Low
Medium
High
Critical

October 18, 2011

Package Information

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.