LWN.net Logo

php: multiple vulnerabilities

Package(s):php CVE #(s):CVE-2008-7068 CVE-2009-3291 CVE-2009-3292 CVE-2009-3293
Created:September 28, 2009 Updated:January 15, 2010
Description:

From the Mandriva advisory:

The dba_replace function in PHP 5.2.6 and 4.x allows context-dependent attackers to cause a denial of service (file truncation) via a key with the NULL byte. NOTE: this might only be a vulnerability in limited circumstances in which the attacker can modify or add database entries but does not have permissions to truncate the file (CVE-2008-7068).

The php_openssl_apply_verification_policy function in PHP before 5.2.11 does not properly perform certificate validation, which has unknown impact and attack vectors, probably related to an ability to spoof certificates (CVE-2009-3291).

Unspecified vulnerability in PHP before 5.2.11 has unknown impact and attack vectors related to missing sanity checks around exif processing. (CVE-2009-3292)

Unspecified vulnerability in the imagecolortransparent function in PHP before 5.2.11 has unknown impact and attack vectors related to an incorrect sanity check for the color index. (CVE-2009-3293)

Alerts:
CentOS CESA-2010:0040 2010-01-15
Red Hat RHSA-2010:0040-01 2010-01-13
CentOS CESA-2010:0040 2010-01-13
Gentoo 201001-03 2010-01-05
Mandriva MDVSA-2009:324 2009-12-07
Mandriva MDVSA-2009:248 2009-09-25
Mandriva MDVSA-2009:247 2009-09-25
Mandriva MDVSA-2009:246 2009-09-25
Ubuntu USN-854-1 2009-11-05
Mandriva MDVSA-2009:302 2009-11-21
SuSE SUSE-SR:2009:017 2009-10-26
Slackware SSA:2009-276-02 2009-10-05
Ubuntu USN-862-1 2009-11-26
Debian DSA-1940-1 2009-11-25

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds