CVE-2004-1392

Impact:
Low
Public Date:
2004-12-15
Bugzilla:
1617411: CVE-2004-1392 security flaw

The MITRE CVE dictionary describes this issue as:

PHP 4.0 with cURL functions allows remote attackers to bypass the open_basedir setting and read arbitrary files via a file: URL argument to the curl_init function.

Find out more about CVE-2004-1392 from the MITRE CVE dictionary dictionary and NIST NVD.

Statement

We do not consider these to be security issues:
http://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=169857#c1

Red Hat Security Errata

Platform Errata Release Date
Red Hat Enterprise Linux 3 (php) RHSA-2005:405 2005-04-28
Red Hat Enterprise Linux 4 (php) RHSA-2005:406 2005-05-04

Last Modified

CVE description copyright © 2017, The MITRE Corporation

Close

Welcome! Check out the Getting Started with Red Hat page for quick tours and guides for common tasks.