Great Reviews!Need help setting up your website, installing Apache, PHP, MySQL, or PhpNuke?Need help customizing or designing scripts?Please contact me via the Contact Us option for further details and pricing.
DESCRIPTION: Some vulnerabilities have been reported in PHP, where some have an unknown impact and others can potentially be exploited by malicious people to disclose sensitive information, cause a DoS (Denial of Service), or compromise a vulnerable system.
1) Some vulnerabilities in PCRE can potentially be exploited by malicious people to disclose sensitive information, cause a DoS (Denial of Service), or compromise an application using the library. For more information: SA27543 SA28923
2) An unspecified error in "imageloadfont" can cause a crash via an invalid font.
3) An unspecified error related to the "open_basedir" handling exists in the "curl" extension.
SOLUTION: Update to version 4.4.9 or higher.
PROVIDED AND/OR DISCOVERED BY: Reported by the vendor.
ORIGINAL ADVISORY: PHP: http://www.php.net/ChangeLog-4.php#4.4.9
OTHER REFERENCES:
SA27543: http://secunia.com/advisories/27543/
SA28923: http://secunia.com/advisories/28923/
Posted on Tuesday, August 12, 2008 @ 19:55:28 EDT by Raven