CVE-2007-5424

Publication date 12 October 2007

Last updated 24 July 2024


Ubuntu priority

Description

The disable_functions feature in PHP 4 and 5 allows attackers to bypass intended restrictions by using an alias, as demonstrated by using ini_alter when ini_set is disabled.

Read the notes from the security team

Status

Package Ubuntu Release Status
php4 7.10 gutsy Not in release
7.04 feisty Not in release
6.10 edgy Ignored
6.06 LTS dapper Ignored
php5 7.10 gutsy Ignored
7.04 feisty Ignored
6.10 edgy Ignored
6.06 LTS dapper Ignored

Notes


kees

this is a configuration issue, not a PHP vulnerability.