VDB
GCVE-110-MAGEIA-2013-379
GCVE-110-MAGEIA-2013-379
Advisory Published
Updated php packages fix security vulnerabilities:
Stefan Esser discovered that PHP incorrectly parsed certificates. An
attacker could use a malformed certificate to cause PHP to crash, resulting
in a denial of service, or possibly execute arbitrary code (CVE-2013-6420).
It was discovered that PHP incorrectly handled DateInterval objects. An
attacker could use this issue to cause PHP to crash, resulting in a denial
of service (CVE-2013-6712).
Affected Products
| Vendor | Product | Versions | Platforms |
|---|---|---|---|
| Mageia | php-apc | 0 (affected), 3.1.14-7.5.mga3 (unaffected) | — |
| Mageia | php-gd-bundled | 5.4.23-1.mga3 (unaffected), 0 (affected) | — |
| Mageia | php | 5.4.23-1.mga3 (unaffected), 0 (affected) | — |
Explore Further
Investigate this vulnerability in the interactive console or download the raw GCVE record.