FYI...
PHP v5.5.2 released
-
http://www.php.net/
16-Aug-2013 - "The PHP development team announces the immediate availability of PHP 5.5.2.
About 20 bugs were fixed, including security issue in OpenSSL module (CVE-2013-4248) and session fixation problem (CVE-2011-4718). All users of PHP are encouraged to upgrade to this release..."
-
https://secunia.com/advisories/54562/
Release Date: 2013-08-19
Where: From remote
Impact: Hijacking, Spoofing
Solution Status: Vendor Patch
Software: PHP 5.5.x
CVE Reference(s): CVE-2011-4718, CVE-2013-4248
For more information:
https://secunia.com/SA54480/
... vulnerabilities are reported in versions prior to 5.5.2.
Solution: Update to version 5.5.2.
Original Advisory:
http://www.php.net/a...#id2013-08-16-1
http://www.php.net/C...Log-5.php#5.5.2
Edited by AplusWebMaster, 20 August 2013 - 05:59 AM.