LinuxQuestions.org
Help answer threads with 0 replies.
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Software
User Name
Password
Linux - Software This forum is for Software issues.
Having a problem installing a new program? Want to know which application is best for the job? Post your question in this forum.

Notices


Reply
  Search this Thread
Old 10-23-2008, 03:24 PM   #1
kaplan71
Member
 
Registered: Nov 2003
Posts: 810

Rep: Reputation: 39
upgrading php 5.2.0 to 5.2.6


Hi there --

I am running an OpenSuSE 10.2 server with Apache 2.2.3 and PHP 5.2.0. The latter two are from the bundled packages that came with the operating system. I need to upgrade PHP to version 5.2.6 due to a vulnerability in the aforementioned build.

I have downloaded the source code for version 5.2.6 from the PHP website. When doing the upgrade, can I simply go through the compile and make process with the code, or should I remove the bundled package first, and then install from source? Also, when doing the upgrade either way, is it better to stop the Apache server or is that not necessary? Thanks.
 
Old 10-23-2008, 03:53 PM   #2
TB0ne
LQ Guru
 
Registered: Jul 2003
Location: Birmingham, Alabama
Distribution: SuSE, RedHat, Slack,CentOS
Posts: 27,805

Rep: Reputation: 8223Reputation: 8223Reputation: 8223Reputation: 8223Reputation: 8223Reputation: 8223Reputation: 8223Reputation: 8223Reputation: 8223Reputation: 8223Reputation: 8223
Quote:
Originally Posted by kaplan71 View Post
Hi there --

I am running an OpenSuSE 10.2 server with Apache 2.2.3 and PHP 5.2.0. The latter two are from the bundled packages that came with the operating system. I need to upgrade PHP to version 5.2.6 due to a vulnerability in the aforementioned build.

I have downloaded the source code for version 5.2.6 from the PHP website. When doing the upgrade, can I simply go through the compile and make process with the code, or should I remove the bundled package first, and then install from source? Also, when doing the upgrade either way, is it better to stop the Apache server or is that not necessary? Thanks.
First thing I'd try to do is to see if I could find the updated packages in a repository, and upgrade through YAST. If not, I'd most certainly remove (uninstall), the existing packages, and do a 'clean' install from source. Afterwards, you'll have to bounce your apache service, to get it to pick up the new version.

Be warned though...this can be tricky, as some things can depend on PHP, and if the location of the executable/libraries changes any, things will break. If this is a production server, I'd consider building a brand new box with the latest 11.x build, and run them parallel, to make sure your stuff works. Do the cutover later, when you can plan an outage. If your company can't do a whole new server, get them to spring for some new hard drives at least. Take out the old one(s), set them aside, and do a clean install there, when you can schedule an outage. Keep a safety net.
 
Old 10-23-2008, 03:56 PM   #3
farslayer
LQ Guru
 
Registered: Oct 2005
Location: Northeast Ohio
Distribution: linuxdebian
Posts: 7,249
Blog Entries: 5

Rep: Reputation: 191Reputation: 191
According to Suse they have already provided an update back in July of 2008..

http://lists.opensuse.org/opensuse-s.../msg00001.html


Quote:
- PHP 5 security update

php5 was updated to fix various bugs and security problems:
- possible stack-based buffer overflow CVE-2008-2050
- incomplete escapeshellcmd() CVE-2008-2051
- printf() integer overflow CVE-2008-1384
- insecure GENERATE_SEED macro CVE-2008-2107
- timezone update for DST in Pakistan

On openSUSE 10.2 up to 11.0 php5 was updated to 5.2.6.
For SUSE Linux Enterprise 10 SP1 and SP2 the fixes were backported.

Last edited by farslayer; 10-23-2008 at 03:57 PM.
 
  


Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
upgrading PHP Tony.Reid Linux - Server 12 11-17-2007 02:54 AM
Upgrading PHP with RH 9 rtcary Linux - General 1 09-11-2005 11:27 AM
Upgrading php? rickycen Linux - Newbie 4 09-02-2005 08:24 PM
Upgrading PHP?!? gldfngr Linux - Software 1 08-25-2005 09:32 AM
upgrading php zurron Linux - Software 6 02-18-2003 07:31 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Software

All times are GMT -5. The time now is 05:33 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration