VDB

GCVE-110-MAGEIA-2021-442

GCVE-110-MAGEIA-2021-442
Advisory Published
Vulnetix · Advisory published September 29, 2021
Updated php packages fix security vulnerabilities: - Integer overflow in mysqli_real_escape_string() - Symlinks are followed when creating PHAR archive - shmop can't read beyond 2147483647 bytes - Integer overflow on substr_replace - Heap buffer overflow via str_repeat - Integer Overflow when concatenating strings - segfault with preloading and statically bound closure - shmop_open won't attach and causes php to crash - Heap Overflow in msg_send - ZipArchive::extractTo extracts outside of destination

Affected Products

VendorProductVersionsPlatforms
Mageiaphp0 (affected), 8.0.11-1.mga8 (unaffected)

Browse GCVE Records

73,877 records in the GCVE database · Updated July 20, 2026

No matching records found.

Explore Further

Investigate this vulnerability in the interactive console or download the raw GCVE record.

$ Console Community · 100/wk Open console ›