Описание
DOMPDF Information Disclosure
DOMPDF before 0.6.2 allows Information Disclosure.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2014-5011
- https://github.com/dompdf/dompdf/commit/cc06008f75262510ee135b8cbb14e333a309f651
- https://github.com/FriendsOfPHP/security-advisories/blob/master/dompdf/dompdf/CVE-2014-5011.yaml
- https://github.com/dompdf/dompdf/compare/v0.6.1...v0.6.2
- https://github.com/dompdf/dompdf/releases/tag/v0.6.2
Пакеты
Наименование
dompdf/dompdf
composer
Затронутые версииВерсия исправления
>= 0.6, < 0.6.2
0.6.2