RLSA-2023:5927 --- libzipID: oval:org.secpod.oval:def:4501498 | Date: (C)2023-11-17 (M)2024-01-02 |
Class: PATCH | Family: unix |
PHP is an HTML-embedded scripting language commonly used with the Apache HTTP Server. Security Fix: * php: XML loading external entity without being enabled * php: phar Buffer mismanagement * php: 1-byte array overrun in common path resolve code * php: DoS vulnerability when parsing multipart request body * php: Missing error check and insufficient random bytes in HTTP Digest authentication for SOAP * php: Password_verify always return true with some hash For more details about the security issue, including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page listed in the References section.
Product: |
libzip |
php |
apcu-panel |