[Forgot Password]
Login  Register Subscribe

30480

 
 

423868

 
 

252097

 
 

909

 
 

196747

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

SUSE-SU-2023:0476-1 -- SLES php7, apache2-mod_php7

ID: oval:org.secpod.oval:def:89048609Date: (C)2023-04-11   (M)2024-01-02
Class: PATCHFamily: unix




This update for php7 fixes the following issues: * CVE-2022-31631: Fixed an issue where PDO::quote would return an unquoted string . * CVE-2023-0568: Fixed NULL byte off-by-one in php_check_specific_open_basedir . * CVE-2023-0662: Fixed DoS vulnerability when parsing multipart request body . * CVE-2023-0567: Fixed vulnerability where BCrypt hashes erroneously validate if the salt is cut short by `$` .

Platform:
SUSE Linux Enterprise Server 15 SP2
SUSE Linux Enterprise Server 15 SP3
Product:
php7
apache2-mod_php7
Reference:
SUSE-SU-2023:0476-1
CVE-2022-31631
CVE-2023-0567
CVE-2023-0568
CVE-2023-0662
CVE    4
CVE-2022-31631
CVE-2023-0568
CVE-2023-0567
CVE-2023-0662
...
CPE    4
cpe:/a:apache2:apache2-mod_php7
cpe:/a:php:php
cpe:/o:suse:suse_linux_enterprise_server:15:sp3
cpe:/o:suse:suse_linux_enterprise_server:15:sp2
...

© SecPod Technologies