Home / vulnerabilities Ubuntu Security Notice USN-1042-2
Posted on 14 January 2011
Source : packetstormsecurity.org Link
Ubuntu Security Notice 1042-2 - USN-1042-1 fixed vulnerabilities in PHP5. The fix for CVE-2010-3436 introduced a regression in the open_basedir restriction handling code. This update fixes the problem. We apologize for the inconvenience. It was discovered that attackers might be able to bypass open_basedir() restrictions by passing a specially crafted filename.