Softpedia
 

NEWS CATEGORIES:



NEWS ARCHIVE >>
SOFTPEDIA REVIEWS >>
MEET THE EDITORS >>
Home > News > Security > Security Fixes and Improvements

January 20th, 2012, 10:03 GMT · By Eduard Kovacs

Suhosin Extension 0.9.33 Released to Fix Stack Buffer Overflow Issue

SHARE:

Adjust text size:


Hardened PHP Project logo
Enlarge picture
Stefan Esser, the developer of Suhosin, the advanced protection system for PHP installations, revealed the availability of Suhosin Extension 0.9.33 that addresses a stack buffer overflow issue that exists in the transparent cookie encryption.

The medium risk vulnerability can be exploited by an attacker to execute arbitrary code, but it can only be exploited in a certain “uncommon and weakened” Suhosin configuration and only if the FORTIFY_SOURCE compile option was not utilized when Suhosin was compiled.

The security hole was discovered during an internal audit of the Suhosin PHP extension and even though it could allow a cyber-mastermind to remotely execute code, further investigation revealed that it could only be triggered if the administrator activated transparent cookie encryption and also explicitly disabled other security features.

Furthermore, Esser says that in order for the vulnerability to be exploited, it requires a PHP application that puts unfiltered user input into a call to the header() function that sends a Set-Cookie header.

By default, the feature that allows for a potential attack to occur, the transparent cookie encryption, is disabled because it stops applications that use JavaScript from accessing cookies.

The vulnerability had been found on January 12, and by January 14 it had been already fixed in the source code, being publicly disclosed a few days later.

Suhosin users are advised to upgrade to the latest version to make sure they’re protected against these potential threats.

Made of two parts, Suhosin is a protection system designed to secure users and servers from flaws, both known and unknown, that may exist in PHP applications and in the PHP core.

One of the components represents a small patch against the PHP core, providing low-level protection, while the other one is a powerful extension the implements other security mechanisms.

TELL US WHAT YOU THINK:

961 hits · Link to this article · Print article · Send to friend · Subscribe to news

MUST-READ RELATED ARTICLES:


Apache Tomcat Users Advised to Update to Avoid Hash DOS Attacks

Oracle Fixes 78 Flaws in January Critical Patch Update

Zero-Day Vulnerability Found in McAfee’s SaaS Products (Updated)

MyBB Users Exposed Due to Vulnerable Plugins

Adobe Releases Security Update for Acrobat and Reader X

READER COMMENTS:



No user comments yet.
Be the first to express your opinion!
Copyright © 2001-2012 Softpedia. Contact/Tip us at

WindowsGamesDriversMacLinuxScriptsMobileHandheldNews

SUBMIT PROGRAM   |   ADVERTISE   |   GET HELP   |   SEND US FEEDBACK   |   RSS FEEDS   |   UPDATE YOUR SOFTWARE   |   ROMANIAN FORUM