Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!
Bug 349600 - www-servers/apache[suexec] - SUEXEC_ALLOWED_PROG is hardcoded to wrong PHP version
Summary: www-servers/apache[suexec] - SUEXEC_ALLOWED_PROG is hardcoded to wrong PHP ve...
Status: RESOLVED WONTFIX
Alias: None
Product: Gentoo Linux
Classification: Unclassified
Component: [OLD] Server (show other bugs)
Hardware: All Linux
: High normal
Assignee: PHP Bugs
URL:
Whiteboard:
Keywords:
Depends on:
Blocks:
 
Reported: 2010-12-24 12:29 UTC by Sebastian Wieseler
Modified: 2012-02-14 13:14 UTC (History)
2 users (show)

See Also:
Package list:
Runtime testing required: ---


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Sebastian Wieseler 2010-12-24 12:29:59 UTC
httpd-2.2.16/support/suexec.c:#define SUEXEC_ALLOWED_PROG "/usr/lib/php5/bin/php-cgi"



But the PHP Path was changed to /usr/lib/php5.3/bin/php-cgi
We should change the hardcoded SUEXEC_ALLOWED_PROG variable or make it some more variable. ;-)



Reproducible: Always




$ emerge --info
Portage 2.1.9.24 (default/linux/x86/10.0, gcc-4.3.4, glibc-2.11.2-r3, 2.6.34 i686)
=================================================================
System uname: Linux-2.6.34-i686-AMD_Sempron-tm-_Processor_3000+-with-gentoo-2.0.1
Timestamp of tree: Fri, 24 Dec 2010 09:15:01 +0000
ccache version 2.4 [enabled]
app-shells/bash:     4.1_p7
dev-lang/python:     2.4.6, 2.5.4-r3, 2.6.6-r1, 3.1.2-r4
dev-util/ccache:     2.4-r9
dev-util/cmake:      2.8.1-r2
sys-apps/baselayout: 2.0.1
sys-apps/openrc:     0.6.0-r1
sys-apps/sandbox:    2.4
sys-devel/autoconf:  2.13::<unknown repository>, 2.65-r1
sys-devel/automake:  1.4_p6::<unknown repository>, 1.5::<unknown repository>, 1.6.3::<unknown repository>, 1.7.9-r1::<unknown repository>, 1.8.5-r3::<unknown repository>, 1.9.6-r2::<unknown repository>, 1.10.3, 1.11.1
sys-devel/binutils:  2.20.1-r1
sys-devel/gcc:       3.4.6-r2, 4.1.2, 4.3.4, 4.4.4-r2
sys-devel/gcc-config: 1.4.1
sys-devel/libtool:   2.2.10
sys-devel/make:      3.81-r2
virtual/os-headers:  2.6.30-r1 (sys-kernel/linux-headers)
ACCEPT_KEYWORDS="x86"
ACCEPT_LICENSE="* -@EULA"
CBUILD="i686-pc-linux-gnu"
CFLAGS="-march=i686 -O2 -pipe"
CHOST="i686-pc-linux-gnu"
CONFIG_PROTECT="/etc /var/qmail/alias /var/qmail/control"
CONFIG_PROTECT_MASK="/etc/ca-certificates.conf /etc/env.d /etc/fonts/fonts.conf /etc/gconf /etc/gentoo-release /etc/php/apache2-php5.3/ext-active/ /etc/php/apache2-php5/ext-active/ /etc/php/cgi-php5.3/ext-active/ /etc/php/cgi-php5/ext-active/ /etc/php/cli-php5.3/ext-active/ /etc/php/cli-php5/ext-active/ /etc/revdep-rebuild /etc/sandbox.d /etc/terminfo /etc/texmf/language.dat.d /etc/texmf/language.def.d /etc/texmf/updmap.d /etc/texmf/web2c"
CXXFLAGS="-march=i686 -O2 -pipe"
DISTDIR="/usr/portage/distfiles"
FEATURES="assume-digests binpkg-logs ccache distlocks fixlafiles fixpackages news parallel-fetch protect-owned sandbox sfperms strict unknown-features-warn unmerge-logs unmerge-orphans userfetch"
GENTOO_MIRRORS="     http://mirror.switch.ch/ftp/mirror/gentoo/     http://gentoo.inode.at     http://gentoo.mirror.sdv.fr"
LANG="en_GB.utf8"
LDFLAGS="-Wl,-O1 -Wl,--as-needed"
LINGUAS="en"
PKGDIR="/usr/portage/packages"
PORTAGE_CONFIGROOT="/"
PORTAGE_RSYNC_OPTS="--recursive --links --safe-links --perms --times --compress --force --whole-file --delete --stats --timeout=180 --exclude=/distfiles --exclude=/local --exclude=/packages"
PORTAGE_TMPDIR="/var/tmp"
PORTDIR="/usr/portage"
PORTDIR_OVERLAY="/usr/local/overlays/local-portage"
SYNC="rsync://rsync.de.gentoo.org/gentoo-portage"
USE="acl apache2 auth bash-completion berkdb bzip2 cli cracklib crypt curl cxx dri emacs exiscan-acl gcj gmp iconv imagemagick imap ipv6 jpeg modules mpm-prefork mudflap mysql ncurses nls nptl nptlonly offensive openmp pam pcre perl png pppd python qmail qmail-spp readline session ssl suexec svg sysfs syslog threads tiff unicode utf8 vim-syntax x86 xorg zlib" ALSA_CARDS="ali5451 als4000 atiixp atiixp-modem bt87x ca0106 cmipci emu10k1 emu10k1x ens1370 ens1371 es1938 es1968 fm801 hda-intel intel8x0 intel8x0m maestro3 trident usb-audio via82xx via82xx-modem ymfpci" ALSA_PCM_PLUGINS="adpcm alaw asym copy dmix dshare dsnoop empty extplug file hooks iec958 ioplug ladspa lfloat linear meter mmap_emul mulaw multi null plug rate route share shm softvol" APACHE2_MODULES="     actions     alias     auth_basic     auth_digest     authn_anon     authn_dbd     authn_dbm     authn_default     authn_file     authz_dbm     authz_default     authz_groupfile     authz_host     authz_owner     authz_user     autoindex     cache     cgi     dav     dav_fs     dav_lock     dbd     deflate     dir     disk_cache     env     expires     ext_filter     file_cache     filter     headers     ident     imagemap     include     info     log_config     logio     mem_cache     mime     mime_magic     negotiation     proxy     proxy_ajp     proxy_balancer     proxy_connect     proxy_http     rewrite     setenvif     so     speling     status     unique_id     userdir     usertrack     vhost_alias " COLLECTD_PLUGINS="df interface irq load memory rrdtool swap syslog" ELIBC="glibc" GPSD_PROTOCOLS="ashtech aivdm earthmate evermore fv18 garmin garmintxt gpsclock itrax mtk3301 nmea ntrip navcom oceanserver oldstyle oncore rtcm104v2 rtcm104v3 sirf superstar2 timing tsip tripmate tnt ubx" INPUT_DEVICES="keyboard mouse evdev" KERNEL="linux" LCD_DEVICES="bayrad cfontz cfontz633 glk hd44780 lb216 lcdm001 mtxorb ncurses text" LINGUAS="en" PHP_TARGETS="php5-2" RUBY_TARGETS="ruby18" USERLAND="GNU" VIDEO_CARDS="fbdev glint intel mach64 mga neomagic nouveau nv r128 radeon savage sis tdfx trident vesa via vmware voodoo" XTABLES_ADDONS="quota2 psd pknock lscan length2 ipv4options ipset ipp2p iface geoip fuzzy condition tee tarpit sysrq steal rawnat logmark ipmark dhcpmac delude chaos account" 
Unset:  CPPFLAGS, CTARGET, EMERGE_DEFAULT_OPTS, FFLAGS, INSTALL_MASK, LC_ALL, MAKEOPTS, PORTAGE_BUNZIP2_COMMAND, PORTAGE_COMPRESS, PORTAGE_COMPRESS_FLAGS, PORTAGE_RSYNC_EXTRA_OPTS
Comment 1 Mike Gilbert gentoo-dev 2010-12-25 03:45:49 UTC
What package is this for?
Comment 2 Sebastian Wieseler 2011-04-30 23:02:23 UTC
It's still reproducible in www-servers/apache-2.2.17.
Can nobody fix this annoying bug? Or change at least the define? :\
Comment 3 Peter Volkov (RETIRED) gentoo-dev 2011-09-01 11:13:47 UTC
I think this is bug in php eselect module. It should
Comment 4 Peter Volkov (RETIRED) gentoo-dev 2011-09-01 11:14:45 UTC
... It should set required symlinks (or hardlink in case symlink does not work).
Comment 5 Sebastian Wieseler 2011-09-17 18:51:46 UTC
It's still reproducible in www-servers/apache-2.2.21.
Comment 6 Peter Volkov (RETIRED) gentoo-dev 2011-09-19 07:03:43 UTC
Will it work if you create /usr/lib/php5/bin/php-cgi symlink to /usr/lib/php5.3/bin/php-cgi ?
Comment 7 Ole Markus With (RETIRED) gentoo-dev 2011-09-19 14:41:58 UTC
(In reply to comment #6)
> Will it work if you create /usr/lib/php5/bin/php-cgi symlink to
> /usr/lib/php5.3/bin/php-cgi ?

That does not look like a good idea and it will break eselect php. Why not use /usr/bin/php-cgi?
Comment 8 Peter Volkov (RETIRED) gentoo-dev 2011-09-20 04:54:49 UTC
Ok, this is doable. The only think I'm concerned about - we deviate from upstream here where /usr/lib/php5/bin/php-cgi is fixed location. Why we decided to change path? Isn't it better to update eselect module instead to create this location?
Comment 9 Ole Markus With (RETIRED) gentoo-dev 2011-09-20 06:11:34 UTC
(In reply to comment #8)
> Ok, this is doable. The only think I'm concerned about - we deviate from
> upstream here where /usr/lib/php5/bin/php-cgi is fixed location. Why we decided
> to change path? Isn't it better to update eselect module instead to create this
> location?

We moved to minor version slotting instead of slotting on major versions, so the paths had to change accordingly. I guess it would be possible to symlink all of /usr/lib/php<slot>/ to /usr/lib/php5,  but that would involve quite a bit of work for this rather specific feature of apache.
Comment 10 Ole Markus With (RETIRED) gentoo-dev 2012-02-14 13:14:00 UTC
For the reason specified in my last post, we'll close this one.