Bug#736969: (possible) CVE request: suPHP 0.7.2 release fixed a possible arbitrary code execution

2014-02-09 Thread cve-assign
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 suPHP 0.7.2 has been released. This release fixes a security issue that was introduced with the 0.7.0 release. This issue affected the source-highlighting feature and could only be exploited, if the suPHP_PHPPath option was set. In this case

Bug#736969: (possible) CVE request: suPHP 0.7.2 release fixed a possible arbitrary code execution

2014-01-28 Thread Salvatore Bonaccorso
Hi I do not have a commit reference for this: suPHP 0.7.2 release fixed a security ssue that was introduced with the 0.7.0 release. From Upstream[1]: cut-cut-cut-cut-cut-cut- suPHP 0.7.2 has been released. This release fixes a security issue that