[Secure-testing-commits] r5590 - data

Moritz Muehlenhoff jmm-guest at alioth.debian.org
Mon Mar 26 20:33:14 CET 2007


Author: jmm-guest
Date: 2007-03-26 19:33:14 +0000 (Mon, 26 Mar 2007)
New Revision: 5590

Modified:
   data/mopb.txt
Log:
MOPB updates


Modified: data/mopb.txt
===================================================================
--- data/mopb.txt	2007-03-26 17:41:29 UTC (rev 5589)
+++ data/mopb.txt	2007-03-26 19:33:14 UTC (rev 5590)
@@ -1,3 +1,12 @@
+32  PHP 4.4.5/4.4.6 session_decode() Double Free Vulnerability (U) 
+TODO, needs to be fixed in php/etch, sarge not affected
+
+31  PHP _SESSION Deserialization Overwrite Vulnerability
+N/A register_globals not supported
+
+30  PHP _SESSION unset() Vulnerability
+TODO
+
 29  PHP 5.2.1 unserialize() Information Leak Vulnerability
 N/A Only affects PHP 5.2.1
 




More information about the Secure-testing-commits mailing list