LWN.net Logo

zendframework: information disclosure

Package(s):zendframework CVE #(s):CVE-2012-3363
Created:July 2, 2012 Updated:April 3, 2013
Description: From the Debian advisory:

An XML External Entities inclusion vulnerability was discovered in Zend Framework, a PHP library. This vulnerability may allow attackers to access to local files, depending on how the framework is used.

Alerts:
Debian DSA-2505-1 2012-06-29
Fedora FEDORA-2012-9979 2012-07-14
Fedora FEDORA-2012-9978 2012-07-14
Mageia MGASA-2012-0200 2012-08-06
Fedora FEDORA-2013-4387 2013-04-03
Fedora FEDORA-2013-4404 2013-04-03

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds