Amazon Linux 2023 : xmlrpc-c, xmlrpc-c-apps, xmlrpc-c-c++ (ALAS2023-2023-068)

It is, therefore, affected by a vulnerability as referenced in the ALAS2023-2023-068 advisory. - xmltok_impl.c in Expat (aka libexpat) before 2.4.5 lacks certain validation of encoding, such as chec ...

Continue Reading

CVSS3 - CRITICAL

CVSS2 - HIGH

php: Fix of 3 CVEs

- CVE-2023-0567: crypt: Fix validation of malformed BCrypt hashes - CVE-2023-0568: Fix array overrun when appending slash to paths - CVE-2023-0662: Fix DoS vulnerability when parsing multipart request ...

Continue Reading

CVSS3 - HIGH

PHP vulnerabilities

## Releases * Ubuntu 16.04 ESM ## Packages * php7.0 - HTML-embedded scripting language interpreter It was discovered that PHP incorrectly handled certain gzip files. An attacker could possibly use ...

Continue Reading

CVSS3 - CRITICAL

Ubuntu 18.04 LTS / 20.04 LTS / 22.04 LTS : PHP vulnerabilities (USN-5902-1)

The remote Ubuntu 18.04 LTS / 20.04 LTS / 22.04 LTS host has packages installed that are affected by multiple vulnerabilities as referenced in the USN-5902-1 advisory. - In PHP 8.0.X before 8.0.28, ...

Continue Reading

CVSS3 - CRITICAL

PHP vulnerabilities

## Releases * Ubuntu 22.10 * Ubuntu 22.04 LTS * Ubuntu 20.04 LTS * Ubuntu 18.04 LTS ## Packages * php7.2 - HTML-embedded scripting language interpreter * php7.4 - HTML-embedded scripting l ...

Continue Reading

CVSS3 - CRITICAL

SUSE SLED15 / SLES15 / openSUSE 15 Security Update : php7 (SUSE-SU-2023:0513-1)

The remote SUSE Linux SLED15 / SLES15 / openSUSE 15 host has packages installed that are affected by multiple vulnerabilities as referenced in the SUSE-SU-2023:0513-1 advisory. - Password_verify() a ...

Continue Reading

CVSS3 - CRITICAL

SUSE SLES15 / openSUSE 15 Security Update : php7 (SUSE-SU-2023:0514-1)

The remote SUSE Linux SLES15 / openSUSE 15 host has packages installed that are affected by multiple vulnerabilities as referenced in the SUSE-SU-2023:0514-1 advisory. - Password_verify() always ret ...

Continue Reading

CVSS3 - CRITICAL

SUSE SLES12 Security Update : php74 (SUSE-SU-2023:0515-1)

The remote SUSE Linux SLES12 host has packages installed that are affected by multiple vulnerabilities as referenced in the SUSE-SU-2023:0515-1 advisory. - Password_verify() always return true with ...

Continue Reading

CVSS3 - CRITICAL

Back to Main

Subscribe for the latest news: