Alerts This Week
Warning Icon 1 692
Alerts This Week
Warning Icon 1 692

Mageia 8 MGASA-2022-0406 Critical: PHP Input Validation And Buffer Flaws

mageia
Calendar Grey November 1, 2022
Dist Mageia Esm H88
Mageia 8 PHP modules upgraded to address various vulnerabilities, notably buffer overflow exploits and challenges with input validation.
GD - Fixed bug #81739: OOB read due to insufficient input validation in imageloadfont()

Summary

GD - Fixed bug #81739: OOB read due to insufficient input validation in imageloadfont(). Hash - Fixed bug #81738: buffer overflow in hash_update() on long parameter. Session - Fixed bug GH-9583 (session_create_id() fails with user defined

References

- https://bugs.mageia.org/show_bug.cgi?id=31041

- https://www.php.net/ChangeLog-8.php#8.0.25

Resolution

SRPMS

- 8/core/php-8.0.25-1.mga8

Severity
critical
Lowest
Low
Medium
High
Critical

Publication date: 01 Nov 2022
URL: https://advisories.mageia.org/MGASA-2022-0406.html
Type: security

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here