[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: [Gnewsense-dev] php-cgi worm vulnerability
From: |
gNewSense Live user |
Subject: |
Re: [Gnewsense-dev] php-cgi worm vulnerability |
Date: |
Tue, 03 Dec 2013 23:50:25 +0800 |
On Tue, 2013-12-03 at 08:54 -0500, dww wrote:
> Here is a link to an article about the Linux.Darlloz worm in which they
> said the vulnerability was fixed in May, 2012.
>
> http://www.gmanetwork.com/news/story/337833/scitech/technology/beware-of-new-worm-targeting-linux-pcs-symantec
>
> In the gnewsense distro we have php5-cgi 5.3.3-7
> +squeeze16(stable-security).
>
> I looked at the Debian changelog:
>
> http://ftp-master.metadata.debian.org/changelogs//main/p/php5/php5_5.3.3-7+squeeze17_changelog
>
> I could not tell which change fixed it, is it the 8 May 2012 fix?
>
>
> _______________________________________________
> gNewSense-dev mailing list
> address@hidden
> https://lists.nongnu.org/mailman/listinfo/gnewsense-dev
I couldn't tell that neither. I suggest you ask Ondřej Surý directly.
Thanks.