Bug#559787: [php-maint] Bug#559787: php4: CVE-2008-5624

2009-12-06 Thread Raphael Geissert
severity 559787 important thanks Hi Michael, safe_mode and open_basedir do not receive security support (see README.Debian.security in php4-common and data/package-tags on the tracker repo) and PHP4 is far behind security updates anyway. Sean, apparently at some point you said you were going to

Bug#559787: php4: CVE-2008-5624

2009-12-06 Thread Michael Gilbert
Package: php4 Version: 6:4.4.4-8 Severity: serious Tags: security Hi, the following CVE (Common Vulnerabilities & Exposures) id was published for php4. CVE-2008-5624[0]: | PHP 5 before 5.2.7 does not properly initialize the page_uid and | page_gid global variables for use by the SAPI php_getuid f