On Thu, 14 Mar 2002, Tzafrir Cohen wrote:

> On Thu, 14 Mar 2002, Shlomi Fish wrote:
>
> >
> > Check:
> >
> > http://lwn.net/2002/0307/security.php3
>
> Previesly on that thread, Shahar asked "Anybody going to handle this?"
>
> Note that php4 is not avialble as an binary RPM for for redhat 6.2
> (AFAIK).
>
> Either compile php 4.1 or maybe handle the symptoms. The story suggests
> disabling file uploads. I could not figure out where php.ini is.  Also
> note that this plugs just one of the holes, albeit the most dangerous one.
>

I have added the relevant directive to /etc/httpd/php3.ini and reloaded
the web-server. Tzafrir, next time you can take a look at the RPM.

Regards,

        Shlomi Fish

> --
> Tzafrir Cohen                        /"\
> mailto:[EMAIL PROTECTED]        \ /  ASCII Ribbon Campaign
> Taub 229, 972-4-829-3942,             X   Against  HTML  Mail
> http://www.technion.ac.il/~tzafrir   / \
>



----------------------------------------------------------------------
Shlomi Fish        [EMAIL PROTECTED]
Home Page:         http://t2.technion.ac.il/~shlomif/
Home E-mail:       [EMAIL PROTECTED]

"Let's suppose you have a table with 2^n cups..."
"Wait a second - is n a natural number?"


----------------------------------------------------------------------------
To unsubscribe, send a message to [EMAIL PROTECTED]
Archives available at http://www.mail-archive.com/[email protected]/

Reply via email to