PHP is affected by a deep recursion crash
http://www.php-security.org/MOPB/MOPB-02-2007.html
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-1549
phpMyAdmin will try to limit recursion on arrays supplied by users, so to
make it impossible use this as an attack
Sebastian Mendel
Security / Restrictions
None
Public
|
Date: 2007-03-26 06:36
|
|
Date: 2007-03-26 06:15
|
|
Date: 2007-03-25 13:23
|
|
Date: 2007-03-02 17:24
|
|
Date: 2007-03-02 16:02
|
|
Date: 2007-03-02 16:02
|
|
Date: 2007-03-02 16:01
|
|
Date: 2007-03-02 14:20
|
|
Date: 2007-03-02 14:20
|
| Filename | Description | Download |
|---|---|---|
| protect_against_deep_recursion.patch | patch against trunk head | Download |
| protect_against_deep_recursion_2.10.patch | patch against 2.10 | Download |
| protect_against_deep_recursion_2.9.patch | patch against 2.9 | Download |
| PMASA-2007-3-for-2.10.0.1.patch | PMASA-2007-3-for-2.10.0.1.patch | Download |
| Field | Old Value | Date | By |
|---|---|---|---|
| close_date | - | 2007-03-14 12:51 | cybot_tm |
| status_id | Open | 2007-03-14 12:51 | cybot_tm |
| summary | CVE-2006-1549 deep recursion crash | 2007-03-02 18:27 | lem9 |
| resolution_id | None | 2007-03-02 18:27 | lem9 |
| priority | 5 | 2007-03-02 18:27 | lem9 |
| assigned_to | nobody | 2007-03-02 17:29 | lem9 |
| File Added | 218541: PMASA-2007-3-for-2.10.0.1.patch | 2007-03-02 17:24 | lem9 |
| File Added | 218530: protect_against_deep_recursion_2.9.patch | 2007-03-02 16:02 | cybot_tm |
| File Added | 218529: protect_against_deep_recursion_2.10.patch | 2007-03-02 16:02 | cybot_tm |
| File Added | 218528: protect_against_deep_recursion.patch | 2007-03-02 16:01 | cybot_tm |
| File Deleted | 218365: | 2007-03-02 16:01 | cybot_tm |
| File Deleted | 218512: | 2007-03-02 16:01 | cybot_tm |
| File Deleted | 218513: | 2007-03-02 16:01 | cybot_tm |
| File Added | 218513: protect_against_deep_recursion_2.9.patch | 2007-03-02 14:20 | cybot_tm |
| File Added | 218512: protect_against_deep_recursion_2.10.patch | 2007-03-02 14:20 | cybot_tm |
| File Added | 218365: protect_against_deep_recursion.patch | 2007-03-01 16:02 | cybot_tm |
Copyright © 2010 Geeknet, Inc. All rights reserved. Terms of Use