PHP 4.2.2 update fixes security bug
updated 10:20 pm EDT, Wed July 24, 2002
The PHP Group has released PHP 4.2.2, which fixes a security vulnerability in versions 4.2.0 and 4.2.1 where "an intruder may be able to execute arbitrary code with the privileges of the web server. This vulnerability may be exploited to compromise the web server and, under certain conditions, to gain privileged access." Third-party binaries and an official Apple update for Mac OS X Server have yet to become available.



Fresh-Faced Recruit
Joined: Jul 2001
Apple ships 4.1.2
Apple ships 4.1.2 (at least on MacOS X). This is not subject to this bug. The bug is in 4.2.x. Apple may come out with an update, but I would doubt it since the version they shipped is not vulnerable.