php4-fastcgi: FastCGI PHP4 Module ---------------------------------------------------------------------- File: php4-fastcgi-4.4.0-6.32.x86_64.rpm Patchrpm: php4-fastcgi-4.4.0-6.32.x86_64.patch.rpm Version: 4.4.0-6.32 Size: 648 kB Patchsize: 649 kB Date: Mon 30 Jul 2007 17:17:49 CEST Source: php4-4.4.0-6.32.src.rpm Security: Yes ---------------------------------------------------------------------- Description: This update fixes multiple bugs in php: - predictable generaton of an initialization vector (IV) in the mcrypt extension - additional cookie attributes could be injected via a session id - specially crafted files could cause integer overflows in gd and leverage them to at least crash gd based applications CVE-2007-2727, CVE-2007-3472, CVE-2007-3475, CVE-2007-3476 CVE-2007-3477, CVE-2007-3478, CVE-2007-3799