Prilikom korištenja programskog paketa PHP-eaccelerator, distribuiranog s operacijskim sustavima Fedora 13 i 14, uočen je novi sigurnosni propust. Radi se o paketu koji omogućuje optimizaciju i ubrzanje izvođenja PHP skripti. Pogreška nastaje zbog neodgovarajućeg rukovanja određenom numeričkom vrijednošću u datoteci "strtod.c" u funkciji "zend_strtod". Ako se ova vrijednost pridijeli određenoj varijabli, može doći do stvaranje beskonačne petlje. Svi se korisnici upućuju na primjenu dostupnog programskog rješenja kako bi otklonili opisani problem.
Fedora Update Notification
2011-01-12 05:02:33
Name : php-eaccelerator
Product : Fedora 13
Version :
Release : 4.fc13
Summary : PHP accelerator, optimizer, encoder and dynamic content cacher
Description :
eAccelerator is a further development of the MMCache PHP Accelerator &
It increases performance of PHP scripts by caching them in compiled state, so
that the overhead of compiling is almost completely eliminated.
Update Information:
This release resolves a critical issue, reported as PHP bug #53632 and
CVE-2010-4645, where conversions from string to double might cause the PHP
interpreter to hang on systems using x87 FPU registers.
* Sat Jan 8 2011 Remi Collet <Ova e-mail adresa je zaštićena od spambota. Potrebno je omogućiti JavaScript da je vidite.> - 1:
- rebuild against PHP 5.3.5
* Sun Aug 8 2010 Remi Collet <Ova e-mail adresa je zaštićena od spambota. Potrebno je omogućiti JavaScript da je vidite.> - 1:
- rebuild against PHP 5.3.4
* Sun Aug 8 2010 Remi Collet <Ova e-mail adresa je zaštićena od spambota. Potrebno je omogućiti JavaScript da je vidite.> - 1:
- strong requires PHP version
- rebuild against php 5.3.3
* Sat Jul 3 2010 Remi Collet <Ova e-mail adresa je zaštićena od spambota. Potrebno je omogućiti JavaScript da je vidite.> - 1:
- update to
[ 1 ] Bug #667806 - CVE-2010-4645 php: hang on numeric value
2.2250738585072011e-308 with x87 fpu
This update can be installed with the "yum" update program. Use
su -c 'yum update php-eaccelerator' at the command line.
For more information, refer to "Managing Software with yum",
available at
All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
package-announce mailing list
Ova e-mail adresa je zaštićena od spambota. Potrebno je omogućiti JavaScript da je vidite.
Fedora Update Notification
2011-01-12 05:02:52
Name : php-eaccelerator
Product : Fedora 14
Version :
Release : 4.fc14
Summary : PHP accelerator, optimizer, encoder and dynamic content cacher
Description :
eAccelerator is a further development of the MMCache PHP Accelerator &
It increases performance of PHP scripts by caching them in compiled state, so
that the overhead of compiling is almost completely eliminated.
Update Information:
This release resolves a critical issue, reported as PHP bug #53632 and
CVE-2010-4645, where conversions from string to double might cause the PHP
interpreter to hang on systems using x87 FPU registers.
* Sat Jan 8 2011 Remi Collet <Ova e-mail adresa je zaštićena od spambota. Potrebno je omogućiti JavaScript da je vidite.> - 1:
- rebuild against PHP 5.3.5
[ 1 ] Bug #667806 - CVE-2010-4645 php: hang on numeric value
2.2250738585072011e-308 with x87 fpu
This update can be installed with the "yum" update program. Use
su -c 'yum update php-eaccelerator' at the command line.
For more information, refer to "Managing Software with yum",
available at
All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
package-announce mailing list
Ova e-mail adresa je zaštićena od spambota. Potrebno je omogućiti JavaScript da je vidite.
Posljednje sigurnosne preporuke