Re: [PHP-DEV] Re: [PHP-QA] Re: [PHP-DEV] Re: [PHP-CVS] cvs: php4(PHP_4_0_5) /sapi/fastcgi From: Zeev Suraski (zeev <email protected>)
Date: 03/21/01

At 20:50 21/3/2001, Sascha Schumann wrote:
>On Wed, 21 Mar 2001, Andi Gutmans wrote:
>
> > A couple of these were buffer overflows IIRC which were security issues.
> > Remember the group@ emails about those?
>
> Fixes against format-string attacks and for file-upload
> issues went into 4.0.3. Or what are you referring to?

The Apache module issue was a security problem. A fairly major one, too.

Zeev

-- 
PHP Development Mailing List <http://www.php.net/>
To unsubscribe, e-mail: php-dev-unsubscribe <email protected>
For additional commands, e-mail: php-dev-help <email protected>
To contact the list administrators, e-mail: php-list-admin <email protected>