[Freerealty] Security Alert! PHP vulnerabilities may affect FreeRealty

Jake Ortman jake at orty.com
Sun Dec 26 14:44:04 MST 2004


OK, update on this. I was running Zend Optimizer on my server, and forgot to
reupdate it when I updated to 4.3.10. So everything's fine, just make sure
after you upgrade to 4.3.10 you run "/scripts/installzendopt" from the
command line (running as root on a cPanel install) or otherwise PHP won't
work at all. You can upgrade to PHP 4.3.10 in root WHM under the "update
Apache" link, making sure to check the 4.3.10 box (or you can run the
easyapache script on the command line -- read on here:
http://www.webhostgear.com/122.html).

Those commands are all assuming a Linux cPanel install.

Have fun :-)
-Jake

-----Original Message-----
From: Jake Ortman [mailto:jake at orty.com] 
Sent: Sunday, December 19, 2004 6:13 PM
To: 'freerealty at lists.rwcinc.net'
Subject: RE: [Freerealty] Security Alert! PHP vulnerabilities may affect
FreeRealty

Jake Ortman wrote:
> I do know that the 4.3.10 cPanel upgrade completely FUBARed my site
> (www.sunrayinc.com). Though most of the errors were because of some hacked
> up scripts I have on there (mostly unrelated to FreeRealty), I'm going to
> have to test this more before I let this thing live, and make sure it just
> wasn't an Apache-related problem.
> 
> -Jake
> 
> -----Original Message-----
> From: Patrick Fleming, EA [mailto:pat at rwcinc.net] 
> Sent: Friday, December 17, 2004 3:11 PM
> To: freerealty at lists.rwcinc.net
> Subject: [Freerealty] Security Alert! PHP vulnerabilities may affect
> FreeRealty
> 
> 
> Vulnerabilities have been announced for PHP. One listed bug has the 
> potential to affect FreeRealty, namely the addslashes() vulnerability.
> This has not been tested to verify that it does affect FreeRealty, but 
> it is highly recommended that you upgrade PHP (or encourage your host to 
> upgrade if you can't upgrade it yourself)
> 
> http://www.php.net/release_4_3_10.php
> http://www.hardened-php.net/advisories/012004.txt
> 
> Minimum secure versions:
> 4.3.10 & 5.0.3
> _______________________________________________
> FreeRealty mailing list
> FreeRealty at lists.rwcinc.net
> http://lists.rwcinc.net/mailman/listinfo/freerealty
> FreeRealty web site: http://www.rwcinc.net/freerealty
> 
> 
> 
> _______________________________________________
> FreeRealty mailing list
> FreeRealty at lists.rwcinc.net
> http://lists.rwcinc.net/mailman/listinfo/freerealty
> FreeRealty web site: http://www.rwcinc.net/freerealty
> 
_______________________________________________
FreeRealty mailing list
FreeRealty at lists.rwcinc.net
http://lists.rwcinc.net/mailman/listinfo/freerealty
FreeRealty web site: http://www.rwcinc.net/freerealty







More information about the FreeRealty mailing list