Page 1 of 1

PHP Security

Posted: Wed Dec 22, 2004 5:39 am
by davecjr
Are there any specific issues with Serendipity relating to the latest PHP security concerns?

One of the reasons I have been looking to move to another host was over PHP versions and now with the latest top stories with phpBB, I was wondering about how all this relates to Serendipity.

Re: PHP Security

Posted: Wed Dec 22, 2004 11:31 am
by garvinhicking
Hi Dave!

If you are using PHP prior to 4.3.10 you can be affected by the unserialize() bug, by which a user can spoof the authentication system - see the NEWS on s9y.org for more information on that.

Regards,
Garvin

Posted: Wed Dec 22, 2004 1:08 pm
by davecjr
Thanks for the reply Garvin! I didn't notice 'News' post before I posted but that's about the way I saw things, thanks again. :lol: