Re: PHP Security Advisory: Vulnerability in PHP versions 4.2.0 and 4.2.1
| From: | Martin Jansen | Date: | Mon, 22 Jul 2002 16:40:21 +0000 |
| Subject: | Re: PHP Security Advisory: Vulnerability in PHP versions 4.2.0 and 4.2.1 | ||
| References: | 1 2 | Groups: | php.dev |
| Request: | Send a blank email to php-dev+get-86083@lists.php.net to get a copy of this message | ||
On Mon Jul 22, 2002 at 06:0054PM +0200, Melvyn Sopacua wrote:
> I'm not sure I can upgrade all my installations, in due time, because of
> backwards compatibility issues in some extensions.
Only PHP 4.2.* is affected by the vulnerability. PHP 4.2.2 is similar
to PHP 4.2.1 but contains just the patch to fix the bug. So if you are
running PHP 4.2.* you should be able to update without breaking
anything. If you are running PHP < 4.2.0 you don't need to worry about
the vulnerability.
- Martin