[Secure-testing-commits] r5590 - data
Moritz Muehlenhoff
jmm-guest at alioth.debian.org
Mon Mar 26 20:33:14 CET 2007
Author: jmm-guest
Date: 2007-03-26 19:33:14 +0000 (Mon, 26 Mar 2007)
New Revision: 5590
Modified:
data/mopb.txt
Log:
MOPB updates
Modified: data/mopb.txt
===================================================================
--- data/mopb.txt 2007-03-26 17:41:29 UTC (rev 5589)
+++ data/mopb.txt 2007-03-26 19:33:14 UTC (rev 5590)
@@ -1,3 +1,12 @@
+32 PHP 4.4.5/4.4.6 session_decode() Double Free Vulnerability (U)
+TODO, needs to be fixed in php/etch, sarge not affected
+
+31 PHP _SESSION Deserialization Overwrite Vulnerability
+N/A register_globals not supported
+
+30 PHP _SESSION unset() Vulnerability
+TODO
+
29 PHP 5.2.1 unserialize() Information Leak Vulnerability
N/A Only affects PHP 5.2.1
More information about the Secure-testing-commits
mailing list