+++ This bug was initially created as a clone of Bug #153140 +++ Remote exploitation of multiple denial of service vulnerabilities in the PHP Group's PHP scripting language allows attackers to consume CPU resources. The vulnerable routines, php_handle_iff() and php_handle_jpeg(), are reachable from the PHP function getimagesize(), which is defined as follows: array getimagesize ( string filename [, array &imageinfo] ) More information is here: http://www.idefense.com/application/poi/display?id=222&type=vulnerabilities
These issues should also affect FC2
Fixed in 4.3.11 update, thanks for the report: http://www.redhat.com/archives/fedora-announce-list/2005-April/msg00033.html