[afnog] PHP vulnerability leading to potential disclosure of PHP keys

Loganaden Velvindron loganaden at gmail.com
Sat Jul 19 13:19:24 UTC 2014


Hi guys,

This PHP vulnerability received little attention in the press compared
to OpenSSL's heartbleed, but its impact cannot be underestimated.

https://www.sektioneins.de/en/blog/14-07-04-phpinfo-infoleak.html

I sent a fix for FreeBSD & Ubuntu/Debian, and you can grab them.

Please update your php as soon as possible.

Kind regards,
//Logan
C-x-C-c



-- 
This message is strictly personal and the opinions expressed do not
represent those of my employers, either past or present.



More information about the afnog mailing list