[Secure-testing-commits] r6744 - data/CVE

nion at alioth.debian.org nion at alioth.debian.org
Sun Sep 30 17:22:06 UTC 2007


Author: nion
Date: 2007-09-30 17:22:05 +0000 (Sun, 30 Sep 2007)
New Revision: 6744

Modified:
   data/CVE/list
Log:
CVE-2007-4662 fixed in php-5.2.4-1


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2007-09-30 17:06:28 UTC (rev 6743)
+++ data/CVE/list	2007-09-30 17:22:05 UTC (rev 6744)
@@ -1040,8 +1040,9 @@
 	- php5 <unfixed> (unimportant)
 	NOTE: open_basedir not supported
 CVE-2007-4662 (Buffer overflow in the php_openssl_make_REQ function in PHP before ...)
-	- php5 <unfixed>
+	- php5 5.2.4-1
 	NOTE: fixed in php5/etch svn
+	NOTE: fix is at http://cvs.php.net/viewcvs.cgi/php-src/ext/openssl/openssl.c?r1=1.146&r2=1.147
 CVE-2007-4661 (The chunk_split function in string.c in PHP 5.2.3 does not properly ...)
 	- php5 <unfixed> (unimportant)
 	NOTE: This CVE refers to an incomplete fix for CVE-2007-2872, an issue only




More information about the Secure-testing-commits mailing list