NT Compatible
  • News
    • Channels
    • Archive
    • Search
    • Submit
  • Articles
    • Categories
  • Knowledgebase
  • Compatibility
    • Search
  • Links
  • Forums
  • Twitter
Advertisement

Latest News
[ Windows | Linux | Apple ]

· OCZ Vertex 450 Series Solid State Drives announced
· NVIDIA GeForce GTX 780 Reviews Roundup
· Apple's 'iWatch' to come in late 2014 with focus on biometrics, analyst says
· Windows 8.1 laptops with AMDs new chips to support wireless display
· HP $399 touchscreen laptop breaks price barrier
· What's Wrong with the Xbox One? and more
· Microsoft updates its YouTube Windows Phone app with some concessions to Google
· 3 Debian Updates
· The third screen: Will all Windows 8 apps run on Microsoft's Xbox One?
· CentOS-6.4 LiveCD and LiveDVD for i386 and x86_64 released

Upcoming News
· iStarUSA BPU-340SATA Military Grade Drive Enclosure
· A Futurelooks New Flash - Futurelooks Weekly Giveawa?= y 2 of 3 – Win an ADATA XPG v1.0 1866mhz 8GB (4GB x 2) Mem?= ory Kit
· Security issue in livecd-tools causes password issue in Fedora cloud images
· Gigabyte C847N Motherboard @ Hardware Secrets
· An MTN News Flash - MEGATech Reviews – Tep Wireles?= s Pocket WiFi Mobile Hotspot Rental
· AMD Kabini Mainstream APU Notebook Platform Preview @ Legit Reviews
· OCZ Vertex 450 Solid State Drive Review
· [CentOS-announce] CEBA-2013:0858 CentOS 6 coreutils Update
· ZOTAC GeForce GTX 780 Graphics Card Video Review with Stuart Davidson @ HardwareHeaven.com
· [Tech ARP] The NVIDIA GeForce GTX 780 Tech Report

Windows Compatibility
· FaxTalk Messenger Pro V6.0 SP1
· Dragon's Lair 3D
· 3Com Etherlink XL 10/100 PCI NIC/3C905C
· Trident 4dWave DX
· Worms 2
· 3Com Total Control Manager 6.0.23
· Microsoft WebMatrix
· Kaspersky Rescue Disk
· Mozilla Firefox 20.0.1 Final
· Realtek High Definition Audio for 2K/XP/03

New Forum Topics
· shutdown link ?
by: estirwent
on: 2013-05-11 17:46
18 replies, 6456 views

· Laptop keyboard drank soda
by: Zenn
on: 2013-04-30 00:27
1 replies, 699 views

· connecting to to internet with ubuntu
by: Zenn
on: 2013-04-30 00:26
2 replies, 4568 views

· Need Linux-compatible PS/2 expansion card
by: Zenn
on: 2013-04-30 00:26
1 replies, 771 views

· irql_not_less_or_equal blue screen
by: Zenn
on: 2013-04-30 00:25
2 replies, 1150 views

News Channels
· Drivers
· Guides
· Reviews
· Security
· Software
· Press Release
· Windows XP
· Microsoft
· Updates
· Interviews
· Windows Server 2003
· General
· Windows Vista
· Webcasts
· Windows Server 2008
· Windows Home Server
· Windows 7
· Windows 8
· Windows Phone 7

What's New
Login to see an overview of all news stories since your last visit.

Affiliates

Welcome to our website

To take full advantage of all features you need to login or register. Registration is completely free and takes only a few seconds.

NT Compatible » News » August 2011 » Serious Crypto Bug Found in PHP 5.3.7

Serious Crypto Bug Found in PHP 5.3.7

Posted by Philipp Esselbach on: 08/22/2011 03:28 PM [ Print | 0 comment(s) ]

Threadpost reports that the maintainers of the PHP scripting language are warning users about a serious crypto problem in the latest release and advising them not to upgrade to PHP 5.3.7 until the bug is resolved.




PHP 5.3.7 was just released last week and that version contained fixes for a slew of security vulnerabilities. But now a serious flaw has been found in that new release that is related to the way that one of the cryptographic functions handles inputs. In some cases, when the crypt() function is called using MD5 salts, the function will return only the salt value instead of the salted hash value.

The problem does not occur when using Blowfish or DES, only with MD5. The initial bug report on the problem in the PHP system appeared Aug. 17, the day before the public stable release of PHP 5.3.7.


Serious Crypto Bug Found in PHP 5.3.7


Bookmark and Share

Related Threads

07/15/2008 05:40 PM: Need some serious help (1) by Myke
01/22/2008 03:35 PM: 2 Serious Questions (7) by Shadow64Bt
05/20/2006 07:36 AM: IE and Outlook Express serious problem on XP (9) by migisukhoi
07/01/2005 05:29 AM: XP 'Your system has recovered from a serious error" (2) by Bahlin
01/14/2005 01:16 PM: FlashGet : a serious spyware threat? (4) by Tom-boy
11/11/2004 12:14 AM: Serious Problems : Installed But Can't Play It (1) by PhantomLotus
02/12/2005 04:25 AM: Re: Win2000 networking error or is it a serious bug!! (6) by wrenhal
10/25/2004 05:50 PM: The system has recovered from a serious system :( (3) by adamvjackson
09/26/2004 01:03 AM: Serious Problem (0) by HybridFreak
10/30/2004 12:30 PM: In need of serious help in running final fantasy 7 on win 2000 (3) by peterh

« Daily Reviews Summary 08/22/11 #2 · Scientific Linux 6.1 Carbon review - Almost there »

NT Compatible » News » August 2011 » Serious Crypto Bug Found in PHP 5.3.7
All products mentioned are registered trademarks or trademarks of their respective owners.
© 1998-2013 Esselbach Internet Solutions - All Rights Reserved. Terms and privacy policy
Powered by Contentteller® Business Edition