PHP Null Character Security Bypass Vulnerability Fixed

PHP version 5.3.4 RC1 includes a fix for a PHP flaw that can allow the contents of files to be leaked out unintentionally.

The following versions of PHP are vulnerable:
PHP 5.3.0 through 5.3.3

References:
http://bugs.php.net/39863

email: david @ sharpesecurity.com
website: www.sharpesecurity.com
Twitter: twitter.com/sharpesecurity
Twitter: twitter.com/patchmanagement

Share

Leave a Reply