Ubuntu: 1042-1: PHP vulnerabilities


 
Thread Tools Search this Thread
Special Forums Cybersecurity Security Advisories (RSS) Ubuntu: 1042-1: PHP vulnerabilities
# 1  
Old 01-11-2011
Ubuntu: 1042-1: PHP vulnerabilities

LinuxSecurity.com: It was discovered that an integer overflow in the XML UTF-8 decodingcode could allow an attacker to bypass cross-site scripting (XSS)protections. This issue only affected Ubuntu 6.06 LTS, Ubuntu 8.04 LTS,and Ubuntu 9.10. (CVE-2009-5016) [More...]

More...
Login or Register to Ask a Question

Previous Thread | Next Thread
Login or Register to Ask a Question
XML_PARSER_CREATE_NS(3) 						 1						   XML_PARSER_CREATE_NS(3)

xml_parser_create_ns - Create an XML parser with namespace support

SYNOPSIS
resource xml_parser_create_ns ([string $encoding], [string $separator = ":"]) DESCRIPTION
xml_parser_create_ns(3) creates a new XML parser with XML namespace support and returns a resource handle referencing it to be used by the other XML functions. PARAMETERS
o $encoding - The optional $encoding specifies the character encoding for the input/output in PHP 4. Starting from PHP 5, the input encoding is automatically detected, so that the $encoding parameter specifies only the output encoding. In PHP 4, the default output encod- ing is the same as the input charset. In PHP 5.0.0 and 5.0.1, the default output charset is ISO-8859-1, while in PHP 5.0.2 and upper is UTF-8. The supported encodings are ISO-8859-1, UTF-8 and US-ASCII. o $separator - With a namespace aware parser tag parameters passed to the various handler functions will consist of namespace and tag name sep- arated by the string specified in $separator. RETURN VALUES
Returns a resource handle for the new XML parser. SEE ALSO
xml_parser_create(3), xml_parser_free(3). PHP Documentation Group XML_PARSER_CREATE_NS(3)