Kyng Chaos
“The beast is actively interested only in now, and, as it is always now and always shall be, there is an eternity of time for the accomplishment of objects.”
- the wisdom of Tarzan

PHP4 XML_RPC Security Alert

There is a security vulnerability in PHP's XML RPC. Until a new release includes the fix, there is a simple way you can update your PHP installation. Assuming you are using my PHP package, type this in the Terminal (note, it downloads and installs a patch from php.net):

sudo /usr/local/php4/bin/pear upgrade XML_RPC

You can update Apple's PHP by leaving off the path to pear.

You should do this update even on a fresh download of my PHP package until a permanent solution is included.

blog/2005/20050706_php4_xml_rpc_security_alert.txt · Last modified: 2008/11/27 09:51 by kyngchaos
Copyright © 2004-2016 William Kyngesburye Driven by DokuWiki Recent changes RSS feed Valid XHTML 1.0