Oval Definition:
oval:org.mitre.oval:def:8236
Revision Date
:
2014-06-23
Version
:
18
Title
:
DSA-1550 suphp -- programming error
Description
:
It was discovered that suphp, an Apache module to run PHP scripts with owner permissions handles symlinks insecurely, which may lead to privilege escalation by local users.
Family
:
unix
Class
:
patch
Status
:
ACCEPTED
Reference(s)
:
CVE-2008-1614
DSA-1550
Platform(s)
:
Debian GNU/Linux 4.0
Product(s)
:
suphp
Definition Synopsis
Debian GNU/Linux 4.0 is installed.
AND
Supported architectures section
Installed architecture is s390
OR
Installed architecture is amd64
OR
Installed architecture is arm
OR
Installed architecture is i386
OR
Installed architecture is mips
OR
Installed architecture is ia64
OR
Installed architecture is alpha
OR
Installed architecture is powerpc
OR
Installed architecture is mipsel
OR
Installed architecture is hppa
AND
Packages section
libapache-mod-suphp is earlier than 0.6.2-1+etch0
OR
suphp-common is earlier than 0.6.2-1+etch0
OR
libapache2-mod-suphp is earlier than 0.6.2-1+etch0
BACK