Alerts This Week
Warning Icon 1 646
Alerts This Week
Warning Icon 1 646

SUSE 11 SP2: 2012:1033-1 Critical Vulnerability in PHP5 Overflow Issue

suse
Calendar Grey August 24, 2012
Dist Suse Esm H88
The latest SUSE Security Patch for PHP5 resolves significant security flaws. Promptly upgrade your systems to mitigate potential threats.
An update that solves two vulnerabilities and has one An update that solves two vulnerabilities and has one An update that solves two vulnerabilities and has one errata is now avai...

Summary

Three security bugs have been fixed in PHP5. * CVE-2012-2688: php5: potential overflow in _php_stream_scandir * CVE-2012-3365: open_basedir bypass via SQLite extension * CVE-2012-3450: An out of band read sql denial of service has been fixed (bnc#769785) Security Issue reference: * CVE-2012-2688 * CVE-2012-3365 * CVE-2012-3450 Patch Instructions: To install this SUSE Security Update use YaST online_update. Alternatively you can run the command listed for your product: - SUSE Linux Enterprise Software Development Kit 11 SP2: zypper in -t patch sdksp2-apache2-mod_php53-6634

References

#769785 #772580 #772582

Cross- CVE-2012-2688 CVE-2012-3365

Affected Products:

SUSE Linux Enterprise Software Development Kit 11 SP2

SUSE Linux Enterprise Server 11 SP2 for VMware

SUSE Linux Enterprise Server 11 SP2

https://www.suse.com/security/cve/CVE-2012-2688.html

https://www.suse.com/security/cve/CVE-2012-3365.html

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2012:1033-1
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here