ML
    • Recent
    • Categories
    • Tags
    • Popular
    • Users
    • Groups
    • Register
    • Login

    Nasty PHP7 remote code execution bug exploited in the wild (Nextcloud specifically called out)

    News
    6
    8
    590
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • NashBrydgesN
      NashBrydges
      last edited by

      https://www.zdnet.com/article/nasty-php7-remote-code-execution-bug-exploited-in-the-wild/

      The Nextcloud advisory:
      https://nextcloud.com/blog/urgent-security-issue-in-nginx-php-fpm/

      1 Reply Last reply Reply Quote 5
      • Emad RE
        Emad R
        last edited by Emad R

        Dam but it only affects NGINX with PHP-FPM

        I thought FPM should be more secure cause it allows PHP to run standalone, but at the same time I dont know why it is PHP vulnerability since it only affects Nginx with FPM and not Apache with FPM, if i was fair man i would put the blame 50/50

        black3dynamiteB scottalanmillerS 2 Replies Last reply Reply Quote 0
        • black3dynamiteB
          black3dynamite @Emad R
          last edited by

          @Emad-R said in Nasty PHP7 remote code execution bug exploited in the wild (Nextcloud specifically called out):

          Dam but it only affects NGINX with PHP-FPM

          I thought FPM should be more secure cause it allows PHP to run standalone, but at the same time I dont know why it is PHP vulnerability since it only affects Nginx, if i was fair man i would put the blame 50/50

          Who manages php-fpm? Because if it’s PHP then they should get all or at least more than 50% of the blame.

          1 Reply Last reply Reply Quote 0
          • JaredBuschJ
            JaredBusch
            last edited by

            This is specifically calling out Nextcloud setup with Nginx as the webserver?

            travisdh1T 1 Reply Last reply Reply Quote 0
            • scottalanmillerS
              scottalanmiller @Emad R
              last edited by

              @Emad-R said in Nasty PHP7 remote code execution bug exploited in the wild (Nextcloud specifically called out):

              I thought FPM should be more secure cause it allows PHP to run standalone

              Just because a model is more secure, doesn't mean that a bug won't expose it.

              1 Reply Last reply Reply Quote 1
              • travisdh1T
                travisdh1 @JaredBusch
                last edited by

                @JaredBusch said in Nasty PHP7 remote code execution bug exploited in the wild (Nextcloud specifically called out):

                This is specifically calling out Nextcloud setup with Nginx as the webserver?

                From a quick browse, it looks like it could affect nginx proxies as well.

                1 Reply Last reply Reply Quote 0
                • black3dynamiteB
                  black3dynamite
                  last edited by

                  From Fedora 30, installing php. PHP-FPM is a weak dependencies for php and also nginx-filesystem gets installed too.
                  0fceabc4-1a62-406c-bfda-2d632eb6c005-image.png

                  Emad RE 1 Reply Last reply Reply Quote 0
                  • Emad RE
                    Emad R @black3dynamite
                    last edited by

                    @black3dynamite said in Nasty PHP7 remote code execution bug exploited in the wild (Nextcloud specifically called out):

                    From Fedora 30, installing php. PHP-FPM is a weak dependencies for php and also nginx-filesystem gets installed too.
                    0fceabc4-1a62-406c-bfda-2d632eb6c005-image.png

                    haha weak dependency, no body called me that in years.

                    ffeb53d9-9e5f-4782-80a1-2b5e2c020cda-image.png

                    1 Reply Last reply Reply Quote 2
                    • 1 / 1
                    • First post
                      Last post