SUSE-SA:2005:051: php4,php5

This script is Copyright (C) 2005-2010 Tenable Network Security, Inc.

Synopsis :

The remote host is missing a vendor-supplied security patch

Description :

The remote host is missing the patch for the advisory SUSE-SA:2005:051 (php4,php5).

This update fixes the following security issues in the PHP scripting

- Bugs in the PEAR::XML_RPC library allowed remote attackers to pass
arbitrary PHP code to the eval() function (CVE-2005-1921,

The Pear::XML_RPC library is not used by default in SUSE Linux, but
might be used by third-party PHP applications.

- An integer overflow bug was found in the PCRE (perl compatible regular
expression) library which could be used by an attacker to potentially
execute code. (CVE-2005-2491)

Please note:

Solution :

Risk factor :


Family: SuSE Local Security Checks

Nessus Plugin ID: 19930 ()

Bugtraq ID:


Ready to Amp Up Your Nessus Experience?

Get Nessus Professional to scan unlimited IPs, run compliance checks & more

Buy Nessus Professional Now