|
|
Subscribe / Log in / New account

php5: three vulnerabilities

Package(s):php5 CVE #(s):CVE-2013-7456 CVE-2015-8876 CVE-2016-5114
Created:June 13, 2016 Updated:June 15, 2016
Description: From the openSUSE advisory:

- CVE-2013-7456: imagescale out-of-bounds read (bnc#982009).

- CVE-2015-8876: Zend/zend_exceptions.c in PHP did not validate certain Exception objects, which allowed remote attackers to cause a denial of service (NULL pointer dereference and application crash) or trigger unintended method execution via crafted serialized data (bsc#981049).

- CVE-2016-5114: fpm_log.c memory leak and buffer overflow (bnc#982162).

Alerts:
Red Hat RHSA-2016:2750-01 rh-php56 2016-11-15
SUSE SUSE-SU-2017:0534-1 php7 2017-02-22
Debian-LTS DLA-628-1 php5 2016-09-18
Ubuntu USN-3045-1 php5, php7.0 2016-08-02
Ubuntu USN-3030-1 libgd2 2016-07-11
openSUSE openSUSE-SU-2016:1688-1 php5 2016-06-27
SUSE SUSE-SU-2016:1638-1 php53 2016-06-21
SUSE SUSE-SU-2016:1581-1 php53 2016-06-14
Debian DSA-3602-1 php5 2016-06-14
openSUSE openSUSE-SU-2016:1553-1 php5 2016-06-11

to post comments


Copyright © 2025, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds