Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×
PHP5 has been updated to fix four security vulnerabilities:
* Heap-based buffer overflow in DNS TXT record parsing (CVE-2014-4049)
* Heap based buffer overflow in time handling in openssl_x509_parse
(CVE-2013-6420)
* Man in the Middle attack in the the openssl_x509_parse due to lack
of \0 handling (CVE-2013-4248)
* NULL pointer dereference in GD XPM decoder (CVE-2014-2497)
Security Issues:
* CVE-2014-4049
#837746 #854880 #868624 #882992
Cross- CVE-2013-4248 CVE-2013-6420 CVE-2014-2497
CVE-2014-4049
Affected Products:
SUSE Linux Enterprise Server 11 SP1 LTSS
https://www.suse.com/security/cve/CVE-2013-4248.html
https://www.suse.com/security/cve/CVE-2013-6420.html
https://www.suse.com/security/cve/CVE-2014-2497.html
https://www.suse.com/security/cve/CVE-2014-4049.html
https://login.microfocus.com/nidp/app/login?sid=0
https://login.microfocus.com/nidp/app/login?sid=0
https://login.microfocus.com/nidp/app/login?sid=0
https://login.microfocus.com/nidp/app/login?sid=0
https://scc.suse.com:443/patches/
Get the latest Linux and open source security news straight to your inbox.