ELSA-2015-1218

ELSA-2015-1218 - php security update

Type:SECURITY
Severity:MODERATE
Release Date:2015-07-09

Description


[5.3.3-46]
- fix gzfile accept paths with NUL character #1213407
- fix patch for CVE-2015-4024

[5.3.3-45]
- fix more functions accept paths with NUL character #1213407

[5.3.3-44]
- soap: missing fix for #1222538 and #1204868

[5.3.3-43]
- core: fix multipart/form-data request can use excessive
amount of CPU usage CVE-2015-4024
- fix various functions accept paths with NUL character
CVE-2015-4026, #1213407
- ftp: fix integer overflow leading to heap overflow when
reading FTP file listing CVE-2015-4022
- phar: fix buffer over-read in metadata parsing CVE-2015-2783
- phar: invalid pointer free() in phar_tar_process_metadata()
CVE-2015-3307
- phar: fix buffer overflow in phar_set_inode() CVE-2015-3329
- phar: fix memory corruption in phar_parse_tarfile caused by
empty entry file name CVE-2015-4021
- soap: more fix type confusion through unserialize #1222538

[5.3.3-42]
- soap: more fix type confusion through unserialize #1204868

[5.3.3-41]
- core: fix double in zend_ts_hash_graceful_destroy CVE-2014-9425
- core: fix use-after-free in unserialize CVE-2015-2787
- exif: fix free on unitialized pointer CVE-2015-0232
- gd: fix buffer read overflow in gd_gif.c CVE-2014-9709
- date: fix use after free vulnerability in unserialize CVE-2015-0273
- enchant: fix heap buffer overflow in enchant_broker_request_dict
CVE-2014-9705
- phar: use after free in phar_object.c CVE-2015-2301
- soap: fix type confusion through unserialize


Related CVEs


CVE-2014-9705
CVE-2014-9709
CVE-2015-0232
CVE-2015-0273
CVE-2015-2301
CVE-2015-2783
CVE-2015-2787
CVE-2015-3307
CVE-2015-3329
CVE-2015-3411
CVE-2015-3412
CVE-2015-4021
CVE-2015-4022
CVE-2015-4024
CVE-2015-4026
CVE-2015-4147
CVE-2015-4148
CVE-2015-4598
CVE-2015-4599
CVE-2015-4600
CVE-2015-4601
CVE-2015-4602
CVE-2015-4603
CVE-2014-9425

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 6 (i386) php-5.3.3-46.el6_6.src.rpm3b550d11417089e090b23f6f42fbcb33ELSA-2019-3287
php-5.3.3-46.el6_6.i686.rpm72ea0e89bd2aad030da2835a4139136bELSA-2019-3287
php-bcmath-5.3.3-46.el6_6.i686.rpm44ca9ced66e3fea7680ef6a670cd6af0ELSA-2019-3287
php-cli-5.3.3-46.el6_6.i686.rpm51d379db2c48542d6dac56af96cb086dELSA-2019-3287
php-common-5.3.3-46.el6_6.i686.rpmfd0d404d963111dc56e7987180c4ce78ELSA-2019-3287
php-dba-5.3.3-46.el6_6.i686.rpm8541c497128e00a976f6cc39cdfd1c7cELSA-2019-3287
php-devel-5.3.3-46.el6_6.i686.rpmbd4060935ca52168a4e337327e4cc5cdELSA-2019-3287
php-embedded-5.3.3-46.el6_6.i686.rpm3ddea146f2cfa3fd20168e7dc07a4f23ELSA-2019-3287
php-enchant-5.3.3-46.el6_6.i686.rpm1b4fb5308a98f130a23dcbfb332b8fc4ELSA-2019-3287
php-fpm-5.3.3-46.el6_6.i686.rpm37f6eb5ba4eb8e0b5e8d85bff6898267ELSA-2019-3287
php-gd-5.3.3-46.el6_6.i686.rpm61cbeadb0c0e0a1c8e685bd450f2feecELSA-2019-3287
php-imap-5.3.3-46.el6_6.i686.rpm2fd61c50759bdc89c24b4ca869bdb91aELSA-2019-3287
php-intl-5.3.3-46.el6_6.i686.rpm6a3610a83bf8f1175126f0434edef38fELSA-2019-3287
php-ldap-5.3.3-46.el6_6.i686.rpm3f58cff01e185a709db0012775ca0af6ELSA-2019-3287
php-mbstring-5.3.3-46.el6_6.i686.rpm69327fa7ec06cab0ad25981724b1eebaELSA-2019-3287
php-mysql-5.3.3-46.el6_6.i686.rpmfed13d61f9711f3c1693858d560d3c73ELSA-2019-3287
php-odbc-5.3.3-46.el6_6.i686.rpmd7bcd127e4f09c6b59d67fe9194381e9ELSA-2019-3287
php-pdo-5.3.3-46.el6_6.i686.rpm1c8762e74e5b9b3b8d0d2f66881733d1ELSA-2019-3287
php-pgsql-5.3.3-46.el6_6.i686.rpm12cb4a6fdefe76ef267f1271370ee6c8ELSA-2019-3287
php-process-5.3.3-46.el6_6.i686.rpm5d863853a0272f92f007bbd049be9727ELSA-2019-3287
php-pspell-5.3.3-46.el6_6.i686.rpmeda548acbfc98c2a0a23cd7cd02a48d7ELSA-2019-3287
php-recode-5.3.3-46.el6_6.i686.rpme90d6b03561c8cee6c4c89e01f90fb80ELSA-2019-3287
php-snmp-5.3.3-46.el6_6.i686.rpm6bf4b5ec7322f8585bd0e2ba30900e50ELSA-2019-3287
php-soap-5.3.3-46.el6_6.i686.rpm1589a4070b268763e8f55c3e043b5d39ELSA-2019-3287
php-tidy-5.3.3-46.el6_6.i686.rpm8e84f9be6c33797d2794d69c130f157cELSA-2019-3287
php-xml-5.3.3-46.el6_6.i686.rpm4c2827f1ffea801caa4b817f9a610bf8ELSA-2019-3287
php-xmlrpc-5.3.3-46.el6_6.i686.rpmc8ac267f91c5949677d8eaa67450565dELSA-2019-3287
php-zts-5.3.3-46.el6_6.i686.rpm6342d67a1c61d8017de17721e73f0648ELSA-2019-3287
Oracle Linux 6 (x86_64) php-5.3.3-46.el6_6.src.rpm3b550d11417089e090b23f6f42fbcb33ELSA-2019-3287
php-5.3.3-46.el6_6.x86_64.rpm4d87d3707a8ccc0acd9beffea633f0fcELSA-2019-3287
php-bcmath-5.3.3-46.el6_6.x86_64.rpm618ef8afa6bb2be7044585eacce2e636ELSA-2019-3287
php-cli-5.3.3-46.el6_6.x86_64.rpm986e946fe078ca3ba42c9ee2d06762cfELSA-2019-3287
php-common-5.3.3-46.el6_6.x86_64.rpme3677b0112c5aaf7ddd3871be6788304ELSA-2019-3287
php-dba-5.3.3-46.el6_6.x86_64.rpm1516bf42fbcc94d7c728b43dd89c9a5cELSA-2019-3287
php-devel-5.3.3-46.el6_6.x86_64.rpm8639804616c29cf2197ac4090ea5bce2ELSA-2019-3287
php-embedded-5.3.3-46.el6_6.x86_64.rpmb9d773c8a08ef72cf17a5bd74774e4a4ELSA-2019-3287
php-enchant-5.3.3-46.el6_6.x86_64.rpmc5b48d9773d524f3adbfae875ef1a2dcELSA-2019-3287
php-fpm-5.3.3-46.el6_6.x86_64.rpma3fb1983bce9e6e714e9c5be428e50bdELSA-2019-3287
php-gd-5.3.3-46.el6_6.x86_64.rpm4d8fe8604f407682f10865fe0cb1f783ELSA-2019-3287
php-imap-5.3.3-46.el6_6.x86_64.rpm229ad2a0aa9387bafc762cb2fe2700b0ELSA-2019-3287
php-intl-5.3.3-46.el6_6.x86_64.rpm4027b9873fd54263b75d471f972dd3f3ELSA-2019-3287
php-ldap-5.3.3-46.el6_6.x86_64.rpm3a2c6a66c63007a584fd4a4cf4bd57bdELSA-2019-3287
php-mbstring-5.3.3-46.el6_6.x86_64.rpm59f5c49a7c28d3b14d67f58929ddd8e3ELSA-2019-3287
php-mysql-5.3.3-46.el6_6.x86_64.rpm7e385021e9f7934f3eb4fd94eb8b650bELSA-2019-3287
php-odbc-5.3.3-46.el6_6.x86_64.rpm331b86baea6871cf119a88ccb54ad393ELSA-2019-3287
php-pdo-5.3.3-46.el6_6.x86_64.rpmc5907a438e1432cd4ae27ab167e0b2f0ELSA-2019-3287
php-pgsql-5.3.3-46.el6_6.x86_64.rpm79d662f8cf76241b45aa90530714529aELSA-2019-3287
php-process-5.3.3-46.el6_6.x86_64.rpm4d02aed586c3ce601b031cd06aa0c252ELSA-2019-3287
php-pspell-5.3.3-46.el6_6.x86_64.rpm0bd3e3157c9a71720d7cfc584113e6d6ELSA-2019-3287
php-recode-5.3.3-46.el6_6.x86_64.rpm5fc169a7fed8cf340a10ea410975389dELSA-2019-3287
php-snmp-5.3.3-46.el6_6.x86_64.rpmddbe447e3f9764820c404d6802348ec1ELSA-2019-3287
php-soap-5.3.3-46.el6_6.x86_64.rpmcd1ab95eb795880cc9fb6ab2e2e846e5ELSA-2019-3287
php-tidy-5.3.3-46.el6_6.x86_64.rpm90f63cbb8691c5492888a8192584dc07ELSA-2019-3287
php-xml-5.3.3-46.el6_6.x86_64.rpm4857ab854437fe131d33954f9a532871ELSA-2019-3287
php-xmlrpc-5.3.3-46.el6_6.x86_64.rpm363c7f53e8e2f129097ec90e9ea504d2ELSA-2019-3287
php-zts-5.3.3-46.el6_6.x86_64.rpm7356ec80c5ea2e6d39b4f34bd37a9825ELSA-2019-3287



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete