This is a real bug.

Here is the patch that fixes it.
http://git.php.net/?p=php-src.git;a=commitdiff;h=0863a0d6a0f740874b4ef8dc732a4ec94949470c

Here is the bug I filed in the debian BTS.
https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=752366

Without this patch an attacker can launch a denial of service on the
server due to resource exhaustion if he knows of a script to target.

** Bug watch added: Debian Bug tracker #752366
   http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=752366

-- 
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1044430

Title:
  Php ftp_* eats memory

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/php5/+bug/1044430/+subscriptions

-- 
ubuntu-bugs mailing list
ubuntu-bugs@lists.ubuntu.com
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

Reply via email to