Oval Definition:
oval:org.mitre.oval:def:20017
Revision Date
:
2014-06-23
Version
:
7
Title
:
DSA-2492-1 php5 - buffer overflow
Description
:
The Phar extension for PHP does not properly handle crafted tar files, leading to a heap-based buffer overflow. PHP applications processing tar files could crash or, potentially, execute arbitrary code.
Family
:
unix
Class
:
patch
Status
:
ACCEPTED
Reference(s)
:
CVE-2012-2386
DSA-2492-1
Platform(s)
:
Debian GNU/kFreeBSD 6.0
Debian GNU/Linux 6.0
Product(s)
:
php5
Definition Synopsis
Debian 6.0 is installed
AND
GNU/Linux or GNU/kFreeBSD kernel
Debian GNU/Linux is installed
OR
Debian GNU/kFreeBSD is installed
AND
php5 DPKG is earlier than 0:5.3.3-7+squeeze13
BACK