VDB
GCVE-VVD-MAGEIA-2020-66
GCVE-VVD-MAGEIA-2020-66
Advisory Published
Updated php packages fix security vulnerabilities:
Two buffer overflows in string and mbstring handling have been found
(CVE-2020-7059, CVE-2020-7060).
Other security fixes have been applied:
- Session: Fixed bug #79091 (heap use-after-free in session_create_id()).
- Date: Fixed bug #79015 (undefined-behavior in php_date.c).
For other fixes in this update, see the referenced chagelog.
Affected Products
| Vendor | Product | Versions | Platforms |
|---|---|---|---|
| Mageia | php | 0 (affected), 7.3.14-1.mga7 (unaffected), 0 (affected), 7.3.14-1.mga7 (unaffected) | — |
| Mageia | hylafax+ | 0 (affected), +-7.0.2-1.mga7 (unaffected) | — |
Browse GCVE Records
100 records in the GCVE database · Updated April 16, 2026
No matching records found.
Explore Further
Investigate this vulnerability in the interactive console or download the raw GCVE record.