Alerts This Week
Warning Icon 1 684
Alerts This Week
Warning Icon 1 684

SUSE Linux 11 SP2 Security Update: PHP5 Important Heap Issues

suse
Calendar Grey August 9, 2013
Dist Suse Esm H88
SUSE Security Patch for PHP5 tackles significant vulnerabilities and resolves a variety of problems associated with memory corruption and additional concerns.
An update that fixes four vulnerabilities is now available

Summary

The following security issues have been fixed: * CVE-2013-4635 (bnc#828020): o Integer overflow in SdnToJewish() * CVE-2013-1635 and CVE-2013-1643 (bnc#807707): o reading system files via untrusted SOAP input o soap.wsdl_cache_dir function did not honour PHP open_basedir * CVE-2013-4113 (bnc#829207): o heap corruption due to badly formed xml Security Issue references: * CVE-2013-4113 * CVE-2013-4635 * CVE-2013-1635 * CVE-2013-1643 Patch Instructions:

References

#807707 #828020 #829207

Cross- CVE-2013-1635 CVE-2013-1643 CVE-2013-4113

CVE-2013-4635

Affected Products:

SUSE Linux Enterprise Software Development Kit 11 SP2

SUSE Linux Enterprise Server 11 SP2 for VMware

SUSE Linux Enterprise Server 11 SP2

https://www.suse.com/security/cve/CVE-2013-1635.html

https://www.suse.com/security/cve/CVE-2013-1643.html

https://www.suse.com/security/cve/CVE-2013-4113.html

https://www.suse.com/security/cve/CVE-2013-4635.html

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2013:1285-2
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here