Oval Definition:oval:org.opensuse.security:def:125892
Revision Date:2019-05-27Version:1
Title:Security update for php72 (Moderate)
Description:

This update for php72 fixes the following issues:

Security issues fixed:

- CVE-2019-11034: Fixed a heap-buffer overflow in php_ifd_get32si() (bsc#1132838). - CVE-2019-11035: Fixed a heap-buffer overflow in exif_iif_add_value() (bsc#1132837). - CVE-2019-11036: Fixed buffer over-read in exif_process_IFD_TAG function leading to information disclosure (bsc#1134322).

Non-security issue fixed:

- Use system gd (bsc#1133714).
Family:unixClass:patch
Status:Reference(s):1132837
1132838
1133714
1134322
CVE-2019-11034
CVE-2019-11035
CVE-2019-11036
SUSE-SU-2019:1360-1
Platform(s):SUSE Linux Enterprise Desktop 12 SP4
SUSE Linux Enterprise Server 12 SP4
SUSE Linux Enterprise Server for SAP Applications 12 SP4
SUSE Linux Enterprise Software Development Kit 12 SP4
Product(s):
Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise Desktop 12 SP4 is installed
  • OR SUSE Linux Enterprise Server 12 SP4 is installed
  • OR SUSE Linux Enterprise Server for SAP Applications 12 SP4 is installed
  • OR SUSE Linux Enterprise Software Development Kit 12 SP4 is installed
  • AND php72-devel-7.2.5-1.17.1 is installed
  • BACK