Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×
An update that fixes one vulnerability is now available.. openSUSE Security Update: Recommended update for php5 ______________________________________________________________________________ Announcement ID: openSUSE-SU-2018:4038-1 Rating: moderate References: #1117107 Cross-References: CVE-2018-19518 Affected Products: openSUSE Leap 42.3 ______________________________________________________________________________ An update that fixes one vulnerability is now available. Description: This update for php5 fixes the following issues: Security issue fixed: - CVE-2018-19518: Fixed imap_open script injection flaw (bsc#1117107). This update was imported from the SUSE:SLE-12:Update update project. Patch Instructions: To install this openSUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - openSUSE Leap 42.3: zypper in -t patch openSUSE-2018-1506=1 Package List: - openSUSE Leap 42.3 (i586 x86_64): apache2-mod_php5-5.5.14-109.1 apache2-mod_php5-debuginfo-5.5.14-109.1 php5-5.5.14-109.1 php5-bcmath-5.5.14-109.1 php5-bcmath-debuginfo-5.5.14-109.1 php5-bz2-5.5.14-109.1 php5-bz2-debuginfo-5.5.14-109.1 php5-calendar-5.5.14-109.1 php5-calendar-debuginfo-5.5.14-109.1 php5-ctype-5.5.14-109.1 php5-ctype-debuginfo-5.5.14-109.1 php5-curl-5.5.14-109.1 php5-curl-debuginfo-5.5.14-109.1 php5-dba-5.5.14-109.1 php5-dba-debuginfo-5.5.14-109.1 php5-debuginfo-5.5.14-109.1 php5-debugsource-5.5.14-109.1 php5-devel-5.5.14-109.1 php5-dom-5.5.14-109.1 php5-dom-debuginfo-5.5.14-109.1 php5-enchant-5.5.14-109.1 php5-enchant-debuginfo-5.5.14-109.1 php5-exif-5.5.14-109.1 php5-exif-debuginfo-5.5.14-109.1 php5-fastcgi-5.5.14-109.1 php5-fastcgi-debuginfo-5.5.14-109.1 php5-fileinfo-5.5.14-109.1 php5-fileinfo-debuginfo-5.5.14-109.1 php5-firebird-5.5.14-109.1 php5-firebird-debuginfo-5.5.14-109.1 php5-fpm-5.5.14-109.1 php5-fpm-debuginfo-5.5.14-109.1 php5-ftp-5.5.14-109.1 php5-ftp-debuginfo-5.5.14-109.1 php5-gd-5.5.14-109.1 php5-gd-debuginfo-5.5.14-109.1 php5-gettext-5.5.14-109.1 php5-gettext-debuginfo-5.5.14-109.1 php5-gmp-5.5.14-109.1 php5-gmp-debuginfo-5.5.14-109.1 php5-iconv-5.5.14-109.1 php5-iconv-debuginfo-5.5.14-109.1 php5-imap-5.5.14-109.1 php5-imap-debuginfo-5.5.14-109.1 php5-intl-5.5.14-109.1 php5-intl-debuginfo-5.5.14-109.1 php5-json-5.5.14-109.1 php5-json-debuginfo-5.5.14-109.1 php5-ldap-5.5.14-109.1 php5-ldap-debuginfo-5.5.14-109.1 php5-mbstring-5.5.14-109.1 php5-mbstring-debuginfo-5.5.14-109.1 php5-mcrypt-5.5.14-109.1 php5-mcrypt-debuginfo-5.5.14-109.1 php5-mssql-5.5.14-109.1 php5-mssql-debuginfo-5.5.14-109.1 php5-mysql-5.5.14-109.1 php5-mysql-debuginfo-5.5.14-109.1 php5-odbc-5.5.14-109.1 php5-odbc-debuginfo-5.5.14-109.1 php5-opcache-5.5.14-109.1 php5-opcache-debuginfo-5.5.14-109.1 php5-openssl-5.5.14-109.1 php5-openssl-debuginfo-5.5.14-109.1 php5-pcntl-5.5.14-109.1 php5-pcntl-debuginfo-5.5.14-109.1 php5-pdo-5.5.14-109.1 php5-pdo-debuginfo-5.5.14-109.1 php5-pgsql-5.5.14-109.1 php5-pgsql-debuginfo-5.5.14-109.1 php5-phar-5.5.14-109.1 php5-phar-debuginfo-5.5.14-109.1 php5-posix-5.5.14-109.1 php5-posix-debuginfo-5.5.14-109.1 php5-pspell-5.5.14-109.1 php5-pspell-debuginfo-5.5.14-109.1 php5-readline-5.5.14-109.1 php5-readline-debuginfo-5.5.14-109.1 php5-shmop-5.5.14-109.1 php5-shmop-debuginfo-5.5.14-109.1 php5-snmp-5.5.14-109.1 php5-snmp-debuginfo-5.5.14-109.1 php5-soap-5.5.14-109.1 php5-soap-debuginfo-5.5.14-109.1 php5-sockets-5.5.14-109.1 php5-sockets-debuginfo-5.5.14-109.1 php5-sqlite-5.5.14-109.1 php5-sqlite-debuginfo-5.5.14-109.1 php5-suhosin-5.5.14-109.1 php5-suhosin-debuginfo-5.5.14-109.1 php5-sysvmsg-5.5.14-109.1 php5-sysvmsg-debuginfo-5.5.14-109.1 php5-sysvsem-5.5.14-109.1 php5-sysvsem-debuginfo-5.5.14-109.1 php5-sysvshm-5.5.14-109.1 php5-sysvshm-debuginfo-5.5.14-109.1 php5-tidy-5.5.14-109.1 php5-tidy-debuginfo-5.5.14-109.1 php5-tokenizer-5.5.14-109.1 php5-tokenizer-debuginfo-5.5.14-109.1 php5-wddx-5.5.14-109.1 php5-wddx-debuginfo-5.5.14-109.1 php5-xmlreader-5.5.14-109.1 php5-xmlreader-debuginfo-5.5.14-109.1 php5-xmlrpc-5.5.14-109.1 php5-xmlrpc-debuginfo-5.5.14-109.1 php5-xmlwriter-5.5.14-109.1 php5-xmlwriter-debuginfo-5.5.14-109.1 php5-xsl-5.5.14-109.1 php5-xsl-debuginfo-5.5.14-109.1 php5-zip-5.5.14-109.1 php5-zip-debuginfo-5.5.14-109.1 php5-zlib-5.5.14-109.1 php5-zlib-debuginfo-5.5.14-109.1 - openSUSE Leap 42.3 (noarch): php5-pear-5.5.14-109.1 References: https://www.suse.com/security/cve/CVE-2018-19518.html https://bugzilla.suse.com/1117107 -- . openSUSE has released a new update for PHP5, addressing a moderate security vulnerability in the imap_open function to mitigate potential injection risks. openSUSE Security Update, php5 script fix, imap injection patch. . LinuxSecurity.com Team
An update that fixes 15 vulnerabilities is now available. An update that fixes 15 vulnerabilities is now available. An update that fixes 15 vulnerabilities is now available.. SUSE Security Update: Security update for php5 ______________________________________________________________________________ Announcement ID: SUSE-SU-2015:1253-1 Rating: important References: #919080 #927147 #931421 #931769 #931772 #931776 #933227 #935224 #935226 #935227 #935232 #935234 #935274 #935275 Cross-References: CVE-2015-3411 CVE-2015-3412 CVE-2015-4021 CVE-2015-4022 CVE-2015-4024 CVE-2015-4026 CVE-2015-4148 CVE-2015-4598 CVE-2015-4599 CVE-2015-4600 CVE-2015-4601 CVE-2015-4602 CVE-2015-4603 CVE-2015-4643 CVE-2015-4644 Affected Products: SUSE Linux Enterprise Software Development Kit 12 SUSE Linux Enterprise Module for Web Scripting 12 ______________________________________________________________________________ An update that fixes 15 vulnerabilities is now available. Description: This security update of PHP fixes the following issues: Security issues fixed: * CVE-2015-4024 [bnc#931421]: Fixed multipart/form-data remote DOS Vulnerability. * CVE-2015-4026 [bnc#931776]: pcntl_exec() did not check path validity. * CVE-2015-4022 [bnc#931772]: Fixed and overflow in ftp_genlist() that resulted in a heap overflow. * CVE-2015-4021 [bnc#931769]: Fixed memory corruption in phar_parse_tarfile when entry filename starts with NULL. * CVE-2015-4148 [bnc#933227]: Fixed SoapClient's do_soap_call() type confusion after unserialize() information disclosure. * CVE-2015-4602 [bnc#935224]: Fixed an incomplete Class unserialization type confusion. * CVE-2015-4599, CVE-2015-4600, CVE-2015-4601 [bnc#935226]: Fixed type confusion issues in unserialize() with various SOAP methods. * CVE-2015-4603 [bnc#935234]: Fixed exception::getTraceAsString type confusion issue after unserialize. * CVE-2015-4644 [bnc#935274]: Fixed a crash in php_pgsql_meta_data. * CVE-2015-4643 [bnc#935275]: Fixed an integer overflow in ftp_genlist() that could result in a heap overflow. * CVE-2015-3411, CVE-2015-3412, CVE-2015-4598 [bnc#935227], [bnc#935232]: Added missing null byte checks for paths in various PHP extensions. Bugs fixed: * configure php-fpm with --localstatedir=/var [bnc#927147] * fix timezone map [bnc#919080] Patch Instructions: To install this SUSE Security Update use YaST online_update. Alternatively you can run the command listed for your product: - SUSE Linux Enterprise Software Development Kit 12: zypper in -t patch SUSE-SLE-SDK-12-2015-322=1 - SUSE Linux Enterprise Module for Web Scripting 12: zypper in -t patch SUSE-SLE-Module-Web-Scripting-12-2015-322=1 To bring your system up-to-date, use "zypper patch". Package List: - SUSE Linux Enterprise Software Development Kit 12 (ppc64le s390x x86_64): php5-debuginfo-5.5.14-30.1 php5-debugsource-5.5.14-30.1 php5-devel-5.5.14-30.1 - SUSE Linux Enterprise Module for Web Scripting 12 (s390x x86_64): apache2-mod_php5-5.5.14-30.1 apache2-mod_php5-debuginfo-5.5.14-30.1 php5-5.5.14-30.1 php5-bcmath-5.5.14-30.1 php5-bcmath-debuginfo-5.5.14-30.1 php5-bz2-5.5.14-30.1 php5-bz2-debuginfo-5.5.14-30.1 php5-calendar-5.5.14-30.1 php5-calendar-debuginfo-5.5.14-30.1 php5-ctype-5.5.14-30.1 php5-ctype-debuginfo-5.5.14-30.1 php5-curl-5.5.14-30.1 php5-curl-debuginfo-5.5.14-30.1 php5-dba-5.5.14-30.1 php5-dba-debuginfo-5.5.14-30.1 php5-debuginfo-5.5.14-30.1 php5-debugsource-5.5.14-30.1 php5-dom-5.5.14-30.1 php5-dom-debuginfo-5.5.14-30.1 php5-enchant-5.5.14-30.1 php5-enchant-debuginfo-5.5.14-30.1 php5-exif-5.5.14-30.1 php5-exif-debuginfo-5.5.14-30.1 php5-fastcgi-5.5.14-30.1 php5-fastcgi-debuginfo-5.5.14-30.1 php5-fileinfo-5.5.14-30.1 php5-fileinfo-debuginfo-5.5.14-30.1 php5-fpm-5.5.14-30.1 php5-fpm-debuginfo-5.5.14-30.1 php5-ftp-5.5.14-30.1 php5-ftp-debuginfo-5.5.14-30.1 php5-gd-5.5.14-30.1 php5-gd-debuginfo-5.5.14-30.1 php5-gettext-5.5.14-30.1 php5-gettext-debuginfo-5.5.14-30.1 php5-gmp-5.5.14-30.1 php5-gmp-debuginfo-5.5.14-30.1 php5-iconv-5.5.14-30.1 php5-iconv-debuginfo-5.5.14-30.1 php5-intl-5.5.14-30.1 php5-intl-debuginfo-5.5.14-30.1 php5-json-5.5.14-30.1 php5-json-debuginfo-5.5.14-30.1 php5-ldap-5.5.14-30.1 php5-ldap-debuginfo-5.5.14-30.1 php5-mbstring-5.5.14-30.1 php5-mbstring-debuginfo-5.5.14-30.1 php5-mcrypt-5.5.14-30.1 php5-mcrypt-debuginfo-5.5.14-30.1 php5-mysql-5.5.14-30.1 php5-mysql-debuginfo-5.5.14-30.1 php5-odbc-5.5.14-30.1 php5-odbc-debuginfo-5.5.14-30.1 php5-openssl-5.5.14-30.1 php5-openssl-debuginfo-5.5.14-30.1 php5-pcntl-5.5.14-30.1 php5-pcntl-debuginfo-5.5.14-30.1 php5-pdo-5.5.14-30.1 php5-pdo-debuginfo-5.5.14-30.1 php5-pgsql-5.5.14-30.1 php5-pgsql-debuginfo-5.5.14-30.1 php5-pspell-5.5.14-30.1 php5-pspell-debuginfo-5.5.14-30.1 php5-shmop-5.5.14-30.1 php5-shmop-debuginfo-5.5.14-30.1 php5-snmp-5.5.14-30.1 php5-snmp-debuginfo-5.5.14-30.1 php5-soap-5.5.14-30.1 php5-soap-debuginfo-5.5.14-30.1 php5-sockets-5.5.14-30.1 php5-sockets-debuginfo-5.5.14-30.1 php5-sqlite-5.5.14-30.1 php5-sqlite-debuginfo-5.5.14-30.1 php5-suhosin-5.5.14-30.1 php5-suhosin-debuginfo-5.5.14-30.1 php5-sysvmsg-5.5.14-30.1 php5-sysvmsg-debuginfo-5.5.14-30.1 php5-sysvsem-5.5.14-30.1 php5-sysvsem-debuginfo-5.5.14-30.1 php5-sysvshm-5.5.14-30.1 php5-sysvshm-debuginfo-5.5.14-30.1 php5-tokenizer-5.5.14-30.1 php5-tokenizer-debuginfo-5.5.14-30.1 php5-wddx-5.5.14-30.1 php5-wddx-debuginfo-5.5.14-30.1 php5-xmlreader-5.5.14-30.1 php5-xmlreader-debuginfo-5.5.14-30.1 php5-xmlrpc-5.5.14-30.1 php5-xmlrpc-debuginfo-5.5.14-30.1 php5-xmlwriter-5.5.14-30.1 php5-xmlwriter-debuginfo-5.5.14-30.1 php5-xsl-5.5.14-30.1 php5-xsl-debuginfo-5.5.14-30.1 php5-zip-5.5.14-30.1 php5-zip-debuginfo-5.5.14-30.1 php5-zlib-5.5.14-30.1 php5-zlib-debuginfo-5.5.14-30.1 - SUSE Linux Enterprise Module for Web Scripting 12 (noarch): php5-pear-5.5.14-30.1 References: https://www.suse.com/security/cve/CVE-2015-3411.html https://www.suse.com/security/cve/CVE-2015-3412.html https://www.suse.com/security/cve/CVE-2015-4021.html https://www.suse.com/security/cve/CVE-2015-4022.html https://www.suse.com/security/cve/CVE-2015-4024.html https://www.suse.com/security/cve/CVE-2015-4026.html https://www.suse.com/security/cve/CVE-2015-4148.html https://www.suse.com/security/cve/CVE-2015-4598.html https://www.suse.com/security/cve/CVE-2015-4599.html https://www.suse.com/security/cve/CVE-2015-4600.html https://www.suse.com/security/cve/CVE-2015-4601.html https://www.suse.com/security/cve/CVE-2015-4602.html https://www.suse.com/security/cve/CVE-2015-4603.html https://www.suse.com/security/cve/CVE-2015-4643.html https://www.suse.com/security/cve/CVE-2015-4644.html https://bugzilla.suse.com/919080 https://bugzilla.suse.com/927147 https://bugzilla.suse.com/931421 https://bugzilla.suse.com/931769 https://bugzilla.suse.com/931772 https://bugzilla.suse.com/931776 https://bugzilla.suse.com/933227 https://bugzilla.suse.com/935224 https://bugzilla.suse.com/935226 https://bugzilla.suse.com/935227 https://bugzilla.suse.com/935232 https://bugzilla.suse.com/935234 https://bugzilla.suse.com/935274 https://bugzilla.suse.com/935275 . SUSE's php7 upgrade addresses 18security flaws, boosting protection for users and resolving key software bugs.. php5 Update, SUSE Security, Linux DoS Fixes. . Severity: Important. LinuxSecurity.com Team
An update that fixes four vulnerabilities is now available. An update that fixes four vulnerabilities is now available. An update that fixes four vulnerabilities is now available.. SUSE Security Update: Security update for php5 ______________________________________________________________________________ Announcement ID: SUSE-SU-2015:0365-1 Rating: important References: #907519 #910659 #911664 #914690 Cross-References: CVE-2014-8142 CVE-2014-9427 CVE-2015-0231 CVE-2015-0232 Affected Products: SUSE Linux Enterprise Software Development Kit 12 SUSE Linux Enterprise Module for Web Scripting 12 ______________________________________________________________________________ An update that fixes four vulnerabilities is now available. Description: php5 was updated to fix four security issues. These security issues were fixed: - CVE-2015-0231: Use-after-free vulnerability in the process_nested_data function in ext/standard/var_unserializer.re in PHP before 5.4.37, 5.5.x before 5.5.21, and 5.6.x before 5.6.5 allowed remote attackers to execute arbitrary code via a crafted unserialize call that leverages improper handling of duplicate numerical keys within the serialized properties of an object. NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-8142 (bnc#910659). - CVE-2014-9427: sapi/cgi/cgi_main.c in the CGI component in PHP through 5.4.36, 5.5.x through 5.5.20, and 5.6.x through 5.6.4, when mmap is used to read a .php file, did not properly consider the mapping's length during processing of an invalid file that begins with a # character and lacks a newline character, which caused an out-of-bounds read and might (1) allow remote attackers to obtain sensitive information from php-cgi process memory by leveraging the ability to upload a .php file or (2) trigger unexpected code execution if a valid PHP script is present in memory locations adjacent to the mapping (bnc#911664). - CVE-2015-0232: The exif_process_unicode function in ext/exif/exif.c in PHP before 5.4.37, 5.5.x before 5.5.21, and 5.6.x before 5.6.5 allowed remote attackers to execute arbitrary code or cause a denial of service (uninitialized pointer free and application crash) via crafted EXIF data in a JPEG image (bnc#914690). - CVE-2014-8142: Use-after-free vulnerability in the process_nested_data function in ext/standard/var_unserializer.re in PHP before 5.4.36, 5.5.x before 5.5.20, and 5.6.x before 5.6.4 allowed remote attackers to execute arbitrary code via a crafted unserialize call that leverages improper handling of duplicate keys within the serialized properties of an object, a different vulnerability than CVE-2004-1019 (bnc#910659). Additionally a fix was included that protects against a possible NULL pointer use (bnc#910659). This non-security issue was fixed: - php53 ignored default_socket_timeout on outgoing SSL connection (bnc#907519). Patch Instructions: To install this SUSE Security Update use YaST online_update. Alternatively you can run the command listed for your product: - SUSE Linux Enterprise Software Development Kit 12: zypper in -t patch SUSE-SLE-SDK-12-2015-94=1 - SUSE Linux Enterprise Module for Web Scripting 12: zypper in -t patch SUSE-SLE-Module-Web-Scripting-12-2015-94=1 To bring your system up-to-date, use "zypper patch". Package List: - SUSE Linux Enterprise Software Development Kit 12 (ppc64le s390x x86_64): php5-debuginfo-5.5.14-11.3 php5-debugsource-5.5.14-11.3 php5-devel-5.5.14-11.3 - SUSE Linux Enterprise Module for Web Scripting 12 (ppc64le s390x x86_64): apache2-mod_php5-5.5.14-11.3 apache2-mod_php5-debuginfo-5.5.14-11.3 php5-5.5.14-11.3 php5-bcmath-5.5.14-11.3 php5-bcmath-debuginfo-5.5.14-11.3 php5-bz2-5.5.14-11.3 php5-bz2-debuginfo-5.5.14-11.3 php5-calendar-5.5.14-11.3 php5-calendar-debuginfo-5.5.14-11.3 php5-ctype-5.5.14-11.3 php5-ctype-debuginfo-5.5.14-11.3 php5-curl-5.5.14-11.3 php5-curl-debuginfo-5.5.14-11.3 php5-dba-5.5.14-11.3 php5-dba-debuginfo-5.5.14-11.3 php5-debuginfo-5.5.14-11.3 php5-debugsource-5.5.14-11.3 php5-dom-5.5.14-11.3 php5-dom-debuginfo-5.5.14-11.3 php5-enchant-5.5.14-11.3 php5-enchant-debuginfo-5.5.14-11.3 php5-exif-5.5.14-11.3 php5-exif-debuginfo-5.5.14-11.3 php5-fastcgi-5.5.14-11.3 php5-fastcgi-debuginfo-5.5.14-11.3 php5-fileinfo-5.5.14-11.3 php5-fileinfo-debuginfo-5.5.14-11.3 php5-fpm-5.5.14-11.3 php5-fpm-debuginfo-5.5.14-11.3 php5-ftp-5.5.14-11.3 php5-ftp-debuginfo-5.5.14-11.3 php5-gd-5.5.14-11.3 php5-gd-debuginfo-5.5.14-11.3 php5-gettext-5.5.14-11.3 php5-gettext-debuginfo-5.5.14-11.3 php5-gmp-5.5.14-11.3 php5-gmp-debuginfo-5.5.14-11.3 php5-iconv-5.5.14-11.3 php5-iconv-debuginfo-5.5.14-11.3 php5-intl-5.5.14-11.3 php5-intl-debuginfo-5.5.14-11.3 php5-json-5.5.14-11.3 php5-json-debuginfo-5.5.14-11.3 php5-ldap-5.5.14-11.3 php5-ldap-debuginfo-5.5.14-11.3 php5-mbstring-5.5.14-11.3 php5-mbstring-debuginfo-5.5.14-11.3 php5-mcrypt-5.5.14-11.3 php5-mcrypt-debuginfo-5.5.14-11.3 php5-mysql-5.5.14-11.3 php5-mysql-debuginfo-5.5.14-11.3 php5-odbc-5.5.14-11.3 php5-odbc-debuginfo-5.5.14-11.3 php5-openssl-5.5.14-11.3 php5-openssl-debuginfo-5.5.14-11.3 php5-pcntl-5.5.14-11.3 php5-pcntl-debuginfo-5.5.14-11.3 php5-pdo-5.5.14-11.3 php5-pdo-debuginfo-5.5.14-11.3 php5-pgsql-5.5.14-11.3 php5-pgsql-debuginfo-5.5.14-11.3 php5-pspell-5.5.14-11.3 php5-pspell-debuginfo-5.5.14-11.3 php5-shmop-5.5.14-11.3 php5-shmop-debuginfo-5.5.14-11.3 php5-snmp-5.5.14-11.3 php5-snmp-debuginfo-5.5.14-11.3 php5-soap-5.5.14-11.3 php5-soap-debuginfo-5.5.14-11.3 php5-sockets-5.5.14-11.3 php5-sockets-debuginfo-5.5.14-11.3 php5-sqlite-5.5.14-11.3 php5-sqlite-debuginfo-5.5.14-11.3 php5-suhosin-5.5.14-11.3 php5-suhosin-debuginfo-5.5.14-11.3 php5-sysvmsg-5.5.14-11.3 php5-sysvmsg-debuginfo-5.5.14-11.3 php5-sysvsem-5.5.14-11.3 php5-sysvsem-debuginfo-5.5.14-11.3 php5-sysvshm-5.5.14-11.3 php5-sysvshm-debuginfo-5.5.14-11.3 php5-tokenizer-5.5.14-11.3 php5-tokenizer-debuginfo-5.5.14-11.3 php5-wddx-5.5.14-11.3 php5-wddx-debuginfo-5.5.14-11.3 php5-xmlreader-5.5.14-11.3 php5-xmlreader-debuginfo-5.5.14-11.3 php5-xmlrpc-5.5.14-11.3 php5-xmlrpc-debuginfo-5.5.14-11.3 php5-xmlwriter-5.5.14-11.3 php5-xmlwriter-debuginfo-5.5.14-11.3 php5-xsl-5.5.14-11.3 php5-xsl-debuginfo-5.5.14-11.3 php5-zip-5.5.14-11.3 php5-zip-debuginfo-5.5.14-11.3 php5-zlib-5.5.14-11.3 php5-zlib-debuginfo-5.5.14-11.3 - SUSE Linux Enterprise Module for Web Scripting 12 (noarch): php5-pear-5.5.14-11.3 References: https://www.suse.com/security/cve/CVE-2014-8142.html https://www.suse.com/security/cve/CVE-2014-9427.html https://www.suse.com/security/cve/CVE-2015-0231.html https://www.suse.com/security/cve/CVE-2015-0232.html https://bugzilla.suse.com/show_bug.cgi?id=907519 https://bugzilla.suse.com/show_bug.cgi?id=910659 https://bugzilla.suse.com/show_bug.cgi?id=911664 https://bugzilla.suse.com/show_bug.cgi?id=914690 . Crucial SUSE php5 patch addresses multiple vulnerabilities, bolstering overall system security.. SUSE Update, Php5 Security, Remote Code Execution, Software Update, Security Threat. . Severity: Important. LinuxSecurity.com Team
Several remote vulnerabilities have been discovered in PHP 5, an hypertext preprocessor. The Common Vulnerabilities and Exposures project identifies the following problems: . - ------------------------------------------------------------------------ Debian Security Advisory DSA-2001-1
Get the latest Linux and open source security news straight to your inbox.