Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 16 Sep 2010 09:59:44 -0400
From:      "Dan Langille" <dan@langille.org>
To:        "Ruslan Mahmatkhanov" <cvs-src@yandex.ru>
Cc:        Dan Langille <dan@langille.org>, freebsd-ports@freebsd.org
Subject:   Re: www/openx vuln
Message-ID:  <afbcc6497518577c28219c95c1e86ab4.squirrel@nyi.unixathome.org>
In-Reply-To: <4C91A6A2.90602@yandex.ru>
References:  <4C9176BD.3020903@langille.org> <4C91A6A2.90602@yandex.ru>

next in thread | previous in thread | raw e-mail | index | archive | help

On Thu, September 16, 2010 1:09 am, Ruslan Mahmatkhanov wrote:
> 16.09.2010 05:45, Dan Langille пишет:
>> This came in last night: http://blog.openx.org/09/security-update/
>>
>> Port needs to be upgraded to 2.8.8 and a vuln entry created.... Sorry,
>> bags not me.
>>
>
> Until update is not come up, user can apply this workaround:
>
> echo "RemoveType .php" > www/images/.htaccess

Do you have a reference for this fix? A URL we can refer people to?

-- 
Dan Langille -- http://langille.org/




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?afbcc6497518577c28219c95c1e86ab4.squirrel>