1. Please take a little time for this simple survey! Thank you for participating!
    Dismiss Notice

Possible bug in php-xslt rpm package

Discussion in 'Plesk for Linux - 8.x and Older' started by gijsbert, Sep 26, 2005.

  1. gijsbert

    gijsbert Basic Pleskian

    26
    57%
    Joined:
    Aug 22, 2001
    Messages:
    83
    Likes Received:
    0
    If you are planning to use the SiteBuilder application for creating web sites, additional packages needs to be installed. One of these packages is:

    php-xslt-1.0-0.i386.rpm

    Please note that after installing the php-xslt rpm, the uid/gid of the /etc and /usr directory becomes apache:apache. I can reproduce this by simply installing the php-xslt rpm provided by plesk.

    If someone is able to abuse a script on your server (i.e. phpBB), they (apache) have access /etc/ and /usr directory. Not good!!!

    Gijsbert Rochat
    g.rochat@sitebytes.nl

    Sitebytes BV
    www.sitebytes.nl
     
  2. bartje3

    bartje3 Guest

    0
     
Loading...