In case you missed all of the mutterings going on about the XML-RPC bug that has shown its ugly head lately in several places, including PHP applications, you might want to check out these two articles for more information - the bug is quite serious and has effected a lot of applications out there.
First off, a note from Builder.com.au with a few of the details, including links to the upgraded version of PEAR XML_RPC as well as the PHPXMLRPC package.
The other story comes from Netcraft and has a little bit more detail on the situation, including detail on how the exploit is made. A little scary that they get into that kind of detail, but at least it will help developers down the line not fall into the same pit...
So, of course, if you're using any PHP application that uses XML-RPC in any form or fashion, be sure to head over to your application's site and grab their latest edition - most have been paying attention and have upgraded thier distributions.




