The Community Forums

Interact with an entire community of cPanel & WHM users!
  1. This site uses cookies. By continuing to use this site, you are agreeing to our use of cookies. Learn More.

Is enabling fileinfo safe?

Discussion in 'Security' started by Vladimir Šebez, May 22, 2017.

  1. Vladimir Šebez

    PartnerNOC

    Joined:
    May 5, 2016
    Messages:
    11
    Likes Received:
    0
    Trophy Points:
    1
    Location:
    Belgrade, Serbia
    cPanel Access Level:
    Root Administrator
    Currently we have fileinfo module disabled on all our servers, but it seems that new versions of PrestaShop require it. I am concerned about enabling this module because it seems that this module often has security issues (NVD - Results).

    Is there a way to enable this module and secure it?
     
    #1 Vladimir Šebez, May 22, 2017
    Last edited: May 22, 2017
  2. cPanelMichael

    cPanelMichael Forums Analyst
    Staff Member

    Joined:
    Apr 11, 2011
    Messages:
    37,204
    Likes Received:
    1,297
    Trophy Points:
    363
    cPanel Access Level:
    Root Administrator
    Hello,

    I'm not aware of any specific actions you can take to help increase the security for this PHP extension. However, note the security reports related to this PHP extension in the URL you provided appear to have already been addressed in newer versions of PHP. For instance, you can review each specific CVE to see which PHP versions are affected, and then confirm if your system uses a version of PHP affected by the bug.

    Thank you.
     
  3. Vladimir Šebez

    PartnerNOC

    Joined:
    May 5, 2016
    Messages:
    11
    Likes Received:
    0
    Trophy Points:
    1
    Location:
    Belgrade, Serbia
    cPanel Access Level:
    Root Administrator
    That is what I'll do. Thanks.
     
Loading...

Share This Page