From 4f2d7949f03e1c198bc888f2d05f421d35c57e21 Mon Sep 17 00:00:00 2001 From: V3n3RiX Date: Mon, 9 Oct 2017 18:53:29 +0100 Subject: reinit the tree, so we can have metadata --- metadata/glsa/glsa-201606-10.xml | 120 +++++++++++++++++++++++++++++++++++++++ 1 file changed, 120 insertions(+) create mode 100644 metadata/glsa/glsa-201606-10.xml (limited to 'metadata/glsa/glsa-201606-10.xml') diff --git a/metadata/glsa/glsa-201606-10.xml b/metadata/glsa/glsa-201606-10.xml new file mode 100644 index 000000000000..bc040e51a50c --- /dev/null +++ b/metadata/glsa/glsa-201606-10.xml @@ -0,0 +1,120 @@ + + + + PHP: Multiple vulnerabilities + Multiple vulnerabilities have been found in PHP, the worst of which + could lead to arbitrary code execution, or cause a Denial of Service + condition. + + php + 2016-06-19 + 2016-06-19: 2 + 537586 + 541098 + 544186 + 544330 + 546872 + 549538 + 552408 + 555576 + 555830 + 556952 + 559612 + 562882 + 571254 + 573892 + 577376 + remote + + + 5.6.19 + 5.5.33 + 5.5.34 + 5.5.35 + 5.5.36 + 5.5.37 + 5.5.38 + 5.6.19 + + + +

PHP is a widely-used general-purpose scripting language that is + especially suited for Web development and can be embedded into HTML. +

+
+ +

Multiple vulnerabilities have been discovered in PHP. Please review the + CVE identifiers referenced below for details. +

+
+ +

An attacker can possibly execute arbitrary code or create a Denial of + Service condition. +

+
+ +

There is no known workaround at this time.

+
+ +

All PHP 5.4 users should upgrade to the latest 5.5 stable branch, as PHP + 5.4 is now masked in Portage: +

+ + + # emerge --sync + # emerge --ask --oneshot --verbose ">=dev=lang/php-5.5.33" + + +

All PHP 5.5 users should upgrade to the latest version:

+ + + # emerge --sync + # emerge --ask --oneshot --verbose ">=dev=lang/php-5.5.33" + + +

All PHP 5.6 users should upgrade to the latest version:

+ + + # emerge --sync + # emerge --ask --oneshot --verbose ">=dev=lang/php-5.6.19" + +
+ + CVE-2013-6501 + CVE-2014-9705 + CVE-2014-9709 + CVE-2015-0231 + CVE-2015-0273 + CVE-2015-1351 + CVE-2015-1352 + CVE-2015-2301 + CVE-2015-2348 + CVE-2015-2783 + CVE-2015-2787 + CVE-2015-3329 + CVE-2015-3330 + CVE-2015-4021 + CVE-2015-4022 + CVE-2015-4025 + CVE-2015-4026 + CVE-2015-4147 + CVE-2015-4148 + CVE-2015-4642 + CVE-2015-4643 + CVE-2015-4644 + CVE-2015-6831 + CVE-2015-6832 + CVE-2015-6833 + CVE-2015-6834 + CVE-2015-6835 + CVE-2015-6836 + CVE-2015-6837 + CVE-2015-6838 + CVE-2015-7803 + CVE-2015-7804 + + + BlueKnight + + b-man +
-- cgit v1.2.3