andrewfeeney, 1 month ago to php #PHP and #infosec folks, what do you make of this? https://youtu.be/kQdRT2odUIk
#PHP and #infosec folks, what do you make of this?
https://youtu.be/kQdRT2odUIk
mergy, 1 month ago @andrewfeeney Workaround possibly for now >> GLIBC Vulnerability on Servers Serving PHP https://mer.gy/iconvglibcvuln (via Rocky Linux) "First, let us check if the system has the compromised set, running iconv -l | grep -E 'CN-?EXT' If there is no output, the system is safe to this vulnerability." Else - Browse to /usr/lib64/gconv/gconv-modules.d Edit gconv-modules-extra.conf Go to line 1254 and comment out the following..." #infosec #glibc #iconvglibc
@andrewfeeney Workaround possibly for now >> GLIBC Vulnerability on Servers Serving PHP https://mer.gy/iconvglibcvuln (via Rocky Linux)
"First, let us check if the system has the compromised set, running
iconv -l | grep -E 'CN-?EXT'
If there is no output, the system is safe to this vulnerability."
Else -
Browse to /usr/lib64/gconv/gconv-modules.d
Edit gconv-modules-extra.conf
Go to line 1254 and comment out the following..."
#infosec #glibc #iconvglibc