[Bug 210886] New: evaluate suhosin patch for php
https://bugzilla.novell.com/show_bug.cgi?id=210886 Summary: evaluate suhosin patch for php Product: openSUSE 10.2 Version: Alpha 5 Platform: Other OS/Version: Other Status: NEW Severity: Normal Priority: P5 - None Component: Security AssignedTo: security-team@suse.de ReportedBy: dmueller@novell.com QAContact: qa@suse.de CC: postadal@novell.com the suhosin patch seems to be important in getting php hosting safe. it would be nice to have it included by default. http://www.hardened-php.net/suhosin/index.html -- Configure bugmail: https://bugzilla.novell.com/userprefs.cgi?tab=email ------- You are receiving this mail because: ------- You are on the CC list for the bug, or are watching someone who is.
https://bugzilla.novell.com/show_bug.cgi?id=210886 judas_iscariote@shorewall.net changed: What |Removed |Added ---------------------------------------------------------------------------- CC| |judas_iscariote@shorewall.net ------- Comment #1 from judas_iscariote@shorewall.net 2006-10-07 12:24 MST ------- this is already in the works ;) -- Configure bugmail: https://bugzilla.novell.com/userprefs.cgi?tab=email ------- You are receiving this mail because: ------- You are on the CC list for the bug, or are watching someone who is.
https://bugzilla.novell.com/show_bug.cgi?id=210886 ------- Comment #2 from mrueckert@novell.com 2006-10-09 08:23 MST ------- dirk you are months too late :p -- Configure bugmail: https://bugzilla.novell.com/userprefs.cgi?tab=email ------- You are receiving this mail because: ------- You are on the CC list for the bug, or are watching someone who is.
https://bugzilla.novell.com/show_bug.cgi?id=210886 ------- Comment #3 from dmueller@novell.com 2006-10-09 08:32 MST ------- If I'm months late, then why isn't it in the package? if it has been rejected, where is the duplicate? -- Configure bugmail: https://bugzilla.novell.com/userprefs.cgi?tab=email ------- You are receiving this mail because: ------- You are on the CC list for the bug, or are watching someone who is.
https://bugzilla.novell.com/show_bug.cgi?id=210886 postadal@novell.com changed: What |Removed |Added ---------------------------------------------------------------------------- Status|NEW |ASSIGNED ------- Comment #4 from postadal@novell.com 2006-10-09 09:09 MST ------- The Suhosin is tested by Cristian on open build service see (http://build.opensuse.org/project/show?project=server%3Aphp), I am packaging it with php 5.2RC5 now. -- Configure bugmail: https://bugzilla.novell.com/userprefs.cgi?tab=email ------- You are receiving this mail because: ------- You are on the CC list for the bug, or are watching someone who is.
https://bugzilla.novell.com/show_bug.cgi?id=210886 ------- Comment #5 from judas_iscariote@shorewall.net 2006-10-09 15:46 MST ------- (In reply to comment #3)
If I'm months late, then why isn't it in the package? if it has been rejected, where is the duplicate?
because this stuff required a certain amount of test ;).. and has been tested for months now ^^ ( my apperance on the credits[1] is the proof :D ) [1]http://www.hardened-php.net/suhosin/thanks.html -- Configure bugmail: https://bugzilla.novell.com/userprefs.cgi?tab=email ------- You are receiving this mail because: ------- You are on the CC list for the bug, or are watching someone who is.
https://bugzilla.novell.com/show_bug.cgi?id=210886 ------- Comment #6 from judas_iscariote@shorewall.net 2006-10-09 15:55 MST ------- well, in the tech topic, the 5.2 package contains atm only suhosin extension, the reason of this is the suhosin-patch is not yet available for php 5.2 , it will be available after 5.2.0 release. the suhosin-patch is **feature frozen**, no other changes are expected to be made on it. all the features go into suhosin extension. We have tested hardeneded php since Jul 01 2006, in the middle, it got obsoleted by suhosin, which has been tested since Aug 24 2006 -- Configure bugmail: https://bugzilla.novell.com/userprefs.cgi?tab=email ------- You are receiving this mail because: ------- You are on the CC list for the bug, or are watching someone who is.
https://bugzilla.novell.com/show_bug.cgi?id=210886 postadal@novell.com changed: What |Removed |Added ---------------------------------------------------------------------------- Status|ASSIGNED |RESOLVED Resolution| |FIXED ------- Comment #7 from postadal@novell.com 2006-10-10 05:33 MST ------- sended to FACTORY with php 5.2RC5 -- Configure bugmail: https://bugzilla.novell.com/userprefs.cgi?tab=email ------- You are receiving this mail because: ------- You are on the CC list for the bug, or are watching someone who is.
participants (1)
-
bugzilla_noreply@novell.com