Bypassing disabled exec functions in PHP via imap_open (CVE-2018-19518). References: - https://bugs.mageia.org/show_bug.cgi?id=23945 - https://www.cve.org/CVERecord?id=CVE-2018-19518 . MGASA-2018-0484 - Updated php packages fix security vulnerability Publication date: 20 Dec 2018 URL: https://advisories.mageia.org/MGASA-2018-0484.html Type: security Affected Mageia releases: 6 CVE: CVE-2018-19518 Bypassing disabled exec functions in PHP via imap_open (CVE-2018-19518). References: - https://bugs.mageia.org/show_bug.cgi?id=23945 - https://www.cve.org/CVERecord?id=CVE-2018-19518 SRPMS: - 6/core/php-5.6.39-1.mga6 . The security notice MGASA-2018-0484 for Mageia relates to vulnerabilities within the PHP exec function that allow for exploits, necessitating urgent updates.. Mageia PHP Update, Security Advisory, Exec Function Security, Vulnerability Management. . Severity: Critical. LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.