Dat open source veel voordelen biedt, was al bekend. Maar de makers van PHP hebben dat nog eens extra laten blijken. Er is namelijk een beveiligingsfout gevonden in de source van PHP 4.2.0 en PHP 4.2.1. Hiermee kan een kwaadwillend persoon een webserver laten crashen door gebruik te maken van verkeerde POST-algoritmes. Gelukkig is deze bug gevonden nog voordat er een script voor geschreven kon worden. Volgens de e-matters security site werkt deze bug niet op x86-gebaseerde computers.
We have discovered a serious vulnerability within the default version of PHP. Depending on the processor architecture it may be possible for a remote attacker to either crash or compromise the web server. On the IA32 architecture (aka. x86) it is not possible to control what will end up in the uninitialised struct because of the stack layout. All possible code paths leave illegal addresses within the struct and PHP will crash when it tries to free them.
Er wordt dringend geadviseerd om de nieuwe versie van PHP (PHP 4.2.2) te installeren waarmee deze bug wordt uitgeschakeld. Deze is te downloaden van php.net. Voor meer informatie over deze bug is er een topic op het forum van tweakers.net geopend.
Verwijderd, bedankt voor deze supersnelle tip.
We have discovered a serious vulnerability within the default version of PHP. Depending on the processor architecture it may be possible for a remote attacker to either crash or compromise the web server.
On the IA32 architecture (aka. x86) it is not possible to control what will end up in the uninitialised struct because of the stack layout. All possible code paths leave illegal addresses within the struct and PHP will crash when it tries to free them.
520)
1)
)
As reported, in the copyright software purchasing at the end of last year, since Software didn't bid, the Beijing municipal government bought software equivalent to Win 95 from Chinese companies such as CS&S and RedFlag. While the newly started two programs would make updates on this basis to improve the software to a level of Win98 and compatible with Office2000 and Word.
Ask Jeeves maakte verder 
Though the server market is shrinking, analyst firm IDC expects blade servers will account for much of the future growth. And in the first quarter of 2002, blades outsold single-processor servers in pizza box-sized enclosures "1U," or 1.75 inches thick, McDowell said.
ACT was developed from a similar technology used to administer its 1.75-inch thick or "1U" servers, the company said.
ECS, by leveraging its vast, low-cost production facilities, has successfully lured other second-tier motherboard makers into striking supply deals. Shuttle has farmed out all of its production to ECS to focus on R&D and sales, while Biostar Microtech International contracts part of its manufacturing with ECS affiliate Global Brands Manufacture (GBM).