Description: | Description:
The remote host is missing an update to php-pear-DB announced via advisory FEDORA-2007-0249.
DB is a database abstraction layer providing: * an OO-style query API * portability features that make programs written for one DBMS work with other DBMS's * a DSN (data source name) format for specifying database servers * prepare/execute (bind) emulation for databases that don't support it natively * a result object for each query response * portable error codes * sequence emulation * sequential and non-sequential row fetching as well as bulk fetching * formats fetched rows as associative arrays, ordered arrays or objects * row limit support * transactions support * table information interface * DocBook and phpDocumentor API documentation
DB layers itself on top of PHP's existing database extensions.
Update Information:
1.7.11 : fbsql: * Fixed commit and rollback to specify the handle to be used.
* Mon Apr 30 2007 Remi Collet 1.7.11-1 - update to 1.7.11 - add generated CHANGELOG References:
[ 1 ] CVE-2006-2313 http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-2313 [ 2 ] CVE-2006-2314 http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-2314 Updated packages:
Solution: Apply the appropriate updates.
This update can be installed with the 'yum' update program. Use 'yum update package-name' at the command line. For more information, refer to 'Managing Software with yum,' available at http://docs.fedoraproject.org/yum/.
http://www.securityspace.com/smysecure/catid.html?in=FEDORA-2007-0249
Risk factor : High
CVSS Score: 7.5
|