Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

SUSE-SU-2016:2013-1

Опубликовано: 09 авг. 2016
Источник: suse-cvrf

Описание

Security update for php53

php53 was updated to fix five security issues.

These security issues were fixed:

  • CVE-2016-5769: mcrypt: Heap Overflow due to integer overflows (bsc#986388).
  • CVE-2015-8935: XSS in header() with Internet Explorer (bsc#986004).
  • CVE-2016-5772: Double Free Courruption in wddx_deserialize (bsc#986244).
  • CVE-2016-5766: Integer Overflow in _gd2GetHeader() resulting in heap overflow (bsc#986386).
  • CVE-2016-5767: Integer Overflow in gdImagePaletteToTrueColor() resulting in heap overflow (bsc#986393).

Список пакетов

SUSE Linux Enterprise Server 11 SP4
apache2-mod_php53-5.3.17-74.1
php53-5.3.17-74.1
php53-bcmath-5.3.17-74.1
php53-bz2-5.3.17-74.1
php53-calendar-5.3.17-74.1
php53-ctype-5.3.17-74.1
php53-curl-5.3.17-74.1
php53-dba-5.3.17-74.1
php53-dom-5.3.17-74.1
php53-exif-5.3.17-74.1
php53-fastcgi-5.3.17-74.1
php53-fileinfo-5.3.17-74.1
php53-ftp-5.3.17-74.1
php53-gd-5.3.17-74.1
php53-gettext-5.3.17-74.1
php53-gmp-5.3.17-74.1
php53-iconv-5.3.17-74.1
php53-intl-5.3.17-74.1
php53-json-5.3.17-74.1
php53-ldap-5.3.17-74.1
php53-mbstring-5.3.17-74.1
php53-mcrypt-5.3.17-74.1
php53-mysql-5.3.17-74.1
php53-odbc-5.3.17-74.1
php53-openssl-5.3.17-74.1
php53-pcntl-5.3.17-74.1
php53-pdo-5.3.17-74.1
php53-pear-5.3.17-74.1
php53-pgsql-5.3.17-74.1
php53-pspell-5.3.17-74.1
php53-shmop-5.3.17-74.1
php53-snmp-5.3.17-74.1
php53-soap-5.3.17-74.1
php53-suhosin-5.3.17-74.1
php53-sysvmsg-5.3.17-74.1
php53-sysvsem-5.3.17-74.1
php53-sysvshm-5.3.17-74.1
php53-tokenizer-5.3.17-74.1
php53-wddx-5.3.17-74.1
php53-xmlreader-5.3.17-74.1
php53-xmlrpc-5.3.17-74.1
php53-xmlwriter-5.3.17-74.1
php53-xsl-5.3.17-74.1
php53-zip-5.3.17-74.1
php53-zlib-5.3.17-74.1
SUSE Linux Enterprise Server for SAP Applications 11 SP4
apache2-mod_php53-5.3.17-74.1
php53-5.3.17-74.1
php53-bcmath-5.3.17-74.1
php53-bz2-5.3.17-74.1
php53-calendar-5.3.17-74.1
php53-ctype-5.3.17-74.1
php53-curl-5.3.17-74.1
php53-dba-5.3.17-74.1
php53-dom-5.3.17-74.1
php53-exif-5.3.17-74.1
php53-fastcgi-5.3.17-74.1
php53-fileinfo-5.3.17-74.1
php53-ftp-5.3.17-74.1
php53-gd-5.3.17-74.1
php53-gettext-5.3.17-74.1
php53-gmp-5.3.17-74.1
php53-iconv-5.3.17-74.1
php53-intl-5.3.17-74.1
php53-json-5.3.17-74.1
php53-ldap-5.3.17-74.1
php53-mbstring-5.3.17-74.1
php53-mcrypt-5.3.17-74.1
php53-mysql-5.3.17-74.1
php53-odbc-5.3.17-74.1
php53-openssl-5.3.17-74.1
php53-pcntl-5.3.17-74.1
php53-pdo-5.3.17-74.1
php53-pear-5.3.17-74.1
php53-pgsql-5.3.17-74.1
php53-pspell-5.3.17-74.1
php53-shmop-5.3.17-74.1
php53-snmp-5.3.17-74.1
php53-soap-5.3.17-74.1
php53-suhosin-5.3.17-74.1
php53-sysvmsg-5.3.17-74.1
php53-sysvsem-5.3.17-74.1
php53-sysvshm-5.3.17-74.1
php53-tokenizer-5.3.17-74.1
php53-wddx-5.3.17-74.1
php53-xmlreader-5.3.17-74.1
php53-xmlrpc-5.3.17-74.1
php53-xmlwriter-5.3.17-74.1
php53-xsl-5.3.17-74.1
php53-zip-5.3.17-74.1
php53-zlib-5.3.17-74.1
SUSE Linux Enterprise Software Development Kit 11 SP4
php53-devel-5.3.17-74.1
php53-imap-5.3.17-74.1
php53-posix-5.3.17-74.1
php53-readline-5.3.17-74.1
php53-sockets-5.3.17-74.1
php53-sqlite-5.3.17-74.1
php53-tidy-5.3.17-74.1

Описание

The sapi_header_op function in main/SAPI.c in PHP before 5.4.38, 5.5.x before 5.5.22, and 5.6.x before 5.6.6 supports deprecated line folding without considering browser compatibility, which allows remote attackers to conduct cross-site scripting (XSS) attacks against Internet Explorer by leveraging (1) %0A%20 or (2) %0D%0A%20 mishandling in the header function.


Затронутые продукты
SUSE Linux Enterprise Server 11 SP4:apache2-mod_php53-5.3.17-74.1
SUSE Linux Enterprise Server 11 SP4:php53-5.3.17-74.1
SUSE Linux Enterprise Server 11 SP4:php53-bcmath-5.3.17-74.1
SUSE Linux Enterprise Server 11 SP4:php53-bz2-5.3.17-74.1

Ссылки

Описание

Integer overflow in the _gd2GetHeader function in gd_gd2.c in the GD Graphics Library (aka libgd) before 2.2.3, as used in PHP before 5.5.37, 5.6.x before 5.6.23, and 7.x before 7.0.8, allows remote attackers to cause a denial of service (heap-based buffer overflow and application crash) or possibly have unspecified other impact via crafted chunk dimensions in an image.


Затронутые продукты
SUSE Linux Enterprise Server 11 SP4:apache2-mod_php53-5.3.17-74.1
SUSE Linux Enterprise Server 11 SP4:php53-5.3.17-74.1
SUSE Linux Enterprise Server 11 SP4:php53-bcmath-5.3.17-74.1
SUSE Linux Enterprise Server 11 SP4:php53-bz2-5.3.17-74.1

Ссылки

Описание

Integer overflow in the gdImageCreate function in gd.c in the GD Graphics Library (aka libgd) before 2.0.34RC1, as used in PHP before 5.5.37, 5.6.x before 5.6.23, and 7.x before 7.0.8, allows remote attackers to cause a denial of service (heap-based buffer overflow and application crash) or possibly have unspecified other impact via a crafted image dimensions.


Затронутые продукты
SUSE Linux Enterprise Server 11 SP4:apache2-mod_php53-5.3.17-74.1
SUSE Linux Enterprise Server 11 SP4:php53-5.3.17-74.1
SUSE Linux Enterprise Server 11 SP4:php53-bcmath-5.3.17-74.1
SUSE Linux Enterprise Server 11 SP4:php53-bz2-5.3.17-74.1

Ссылки

Описание

Multiple integer overflows in mcrypt.c in the mcrypt extension in PHP before 5.5.37, 5.6.x before 5.6.23, and 7.x before 7.0.8 allow remote attackers to cause a denial of service (heap-based buffer overflow and application crash) or possibly have unspecified other impact via a crafted length value, related to the (1) mcrypt_generic and (2) mdecrypt_generic functions.


Затронутые продукты
SUSE Linux Enterprise Server 11 SP4:apache2-mod_php53-5.3.17-74.1
SUSE Linux Enterprise Server 11 SP4:php53-5.3.17-74.1
SUSE Linux Enterprise Server 11 SP4:php53-bcmath-5.3.17-74.1
SUSE Linux Enterprise Server 11 SP4:php53-bz2-5.3.17-74.1

Ссылки

Описание

Double free vulnerability in the php_wddx_process_data function in wddx.c in the WDDX extension in PHP before 5.5.37, 5.6.x before 5.6.23, and 7.x before 7.0.8 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via crafted XML data that is mishandled in a wddx_deserialize call.


Затронутые продукты
SUSE Linux Enterprise Server 11 SP4:apache2-mod_php53-5.3.17-74.1
SUSE Linux Enterprise Server 11 SP4:php53-5.3.17-74.1
SUSE Linux Enterprise Server 11 SP4:php53-bcmath-5.3.17-74.1
SUSE Linux Enterprise Server 11 SP4:php53-bz2-5.3.17-74.1

Ссылки
Уязвимость SUSE-SU-2016:2013-1