Oval Definition:oval:org.opensuse.security:def:202231626
Revision Date:2022-08-07Version:1
Title:CVE-2022-31626
Description:

In PHP versions 7.4.x below 7.4.30, 8.0.x below 8.0.20, and 8.1.x below 8.1.7, when pdo_mysql extension with mysqlnd driver, if the third party is allowed to supply host to connect to and the password for the connection, password of excessive length can trigger a buffer overflow in PHP, which can lead to a remote code execution vulnerability.
Family:unixClass:vulnerability
Status:Reference(s):Mitre CVE-2022-31626
SUSE CVE-2022-31626
SUSE-SU-2022:2161-1
SUSE-SU-2022:2183-1
SUSE-SU-2022:2185-1
SUSE-SU-2022:2275-1
SUSE-SU-2022:2292-1
SUSE-SU-2022:2303-1
Platform(s):openSUSE Leap 15.4
SUSE Linux Enterprise High Performance Computing 15 SP4
SUSE Linux Enterprise Module for Legacy 15 SP4
SUSE Linux Enterprise Module for Package Hub 15 SP4
SUSE Linux Enterprise Module for Web Scripting 15 SP4
SUSE Linux Enterprise Server 15 SP4
SUSE Linux Enterprise Server for SAP Applications 15 SP4
SUSE Manager Proxy 4.3
SUSE Manager Retail Branch Server 4.3
SUSE Manager Server 4.3
Product(s):
Definition Synopsis
  • openSUSE Leap 15.4 is installed
  • AND Package Information
  • php7-firebird-7.4.6-150200.3.41.1 is installed
  • AND php7-firebird is signed with openSUSE key
  • Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise Module for Package Hub 15 SP4 is installed
  • AND php7-embed-7.4.25-150400.4.8.1 is installed
  • OR Package Information
  • SUSE Linux Enterprise High Performance Computing 15 SP4 is installed
  • OR SUSE Linux Enterprise Module for Legacy 15 SP4 is installed
  • OR SUSE Linux Enterprise Server 15 SP4 is installed
  • OR SUSE Linux Enterprise Server for SAP Applications 15 SP4 is installed
  • OR SUSE Manager Proxy 4.3 is installed
  • OR SUSE Manager Retail Branch Server 4.3 is installed
  • OR SUSE Manager Server 4.3 is installed
  • AND
  • apache2-mod_php7-7.4.25-150400.4.8.1 is installed
  • OR php7-7.4.25-150400.4.8.1 is installed
  • OR php7-bcmath-7.4.25-150400.4.8.1 is installed
  • OR php7-bz2-7.4.25-150400.4.8.1 is installed
  • OR php7-calendar-7.4.25-150400.4.8.1 is installed
  • OR php7-cli-7.4.25-150400.4.8.1 is installed
  • OR php7-ctype-7.4.25-150400.4.8.1 is installed
  • OR php7-curl-7.4.25-150400.4.8.1 is installed
  • OR php7-dba-7.4.25-150400.4.8.1 is installed
  • OR php7-devel-7.4.25-150400.4.8.1 is installed
  • OR php7-dom-7.4.25-150400.4.8.1 is installed
  • OR php7-enchant-7.4.25-150400.4.8.1 is installed
  • OR php7-exif-7.4.25-150400.4.8.1 is installed
  • OR php7-fastcgi-7.4.25-150400.4.8.1 is installed
  • OR php7-fileinfo-7.4.25-150400.4.8.1 is installed
  • OR php7-fpm-7.4.25-150400.4.8.1 is installed
  • OR php7-ftp-7.4.25-150400.4.8.1 is installed
  • OR php7-gd-7.4.25-150400.4.8.1 is installed
  • OR php7-gettext-7.4.25-150400.4.8.1 is installed
  • OR php7-gmp-7.4.25-150400.4.8.1 is installed
  • OR php7-iconv-7.4.25-150400.4.8.1 is installed
  • OR php7-intl-7.4.25-150400.4.8.1 is installed
  • OR php7-json-7.4.25-150400.4.8.1 is installed
  • OR php7-ldap-7.4.25-150400.4.8.1 is installed
  • OR php7-mbstring-7.4.25-150400.4.8.1 is installed
  • OR php7-mysql-7.4.25-150400.4.8.1 is installed
  • OR php7-odbc-7.4.25-150400.4.8.1 is installed
  • OR php7-opcache-7.4.25-150400.4.8.1 is installed
  • OR php7-openssl-7.4.25-150400.4.8.1 is installed
  • OR php7-pcntl-7.4.25-150400.4.8.1 is installed
  • OR php7-pdo-7.4.25-150400.4.8.1 is installed
  • OR php7-pgsql-7.4.25-150400.4.8.1 is installed
  • OR php7-phar-7.4.25-150400.4.8.1 is installed
  • OR php7-posix-7.4.25-150400.4.8.1 is installed
  • OR php7-readline-7.4.25-150400.4.8.1 is installed
  • OR php7-shmop-7.4.25-150400.4.8.1 is installed
  • OR php7-snmp-7.4.25-150400.4.8.1 is installed
  • OR php7-soap-7.4.25-150400.4.8.1 is installed
  • OR php7-sockets-7.4.25-150400.4.8.1 is installed
  • OR php7-sodium-7.4.25-150400.4.8.1 is installed
  • OR php7-sqlite-7.4.25-150400.4.8.1 is installed
  • OR php7-sysvmsg-7.4.25-150400.4.8.1 is installed
  • OR php7-sysvsem-7.4.25-150400.4.8.1 is installed
  • OR php7-sysvshm-7.4.25-150400.4.8.1 is installed
  • OR php7-tidy-7.4.25-150400.4.8.1 is installed
  • OR php7-tokenizer-7.4.25-150400.4.8.1 is installed
  • OR php7-xmlreader-7.4.25-150400.4.8.1 is installed
  • OR php7-xmlrpc-7.4.25-150400.4.8.1 is installed
  • OR php7-xmlwriter-7.4.25-150400.4.8.1 is installed
  • OR php7-xsl-7.4.25-150400.4.8.1 is installed
  • OR php7-zip-7.4.25-150400.4.8.1 is installed
  • OR php7-zlib-7.4.25-150400.4.8.1 is installed
  • OR Package Information
  • SUSE Linux Enterprise High Performance Computing 15 SP4 is installed
  • OR SUSE Linux Enterprise Module for Web Scripting 15 SP4 is installed
  • OR SUSE Linux Enterprise Server 15 SP4 is installed
  • OR SUSE Linux Enterprise Server for SAP Applications 15 SP4 is installed
  • OR SUSE Manager Proxy 4.3 is installed
  • OR SUSE Manager Retail Branch Server 4.3 is installed
  • OR SUSE Manager Server 4.3 is installed
  • AND
  • apache2-mod_php8-8.0.10-150400.4.8.1 is installed
  • OR php8-8.0.10-150400.4.8.1 is installed
  • OR php8-bcmath-8.0.10-150400.4.8.1 is installed
  • OR php8-bz2-8.0.10-150400.4.8.1 is installed
  • OR php8-calendar-8.0.10-150400.4.8.1 is installed
  • OR php8-cli-8.0.10-150400.4.8.1 is installed
  • OR php8-ctype-8.0.10-150400.4.8.1 is installed
  • OR php8-curl-8.0.10-150400.4.8.1 is installed
  • OR php8-dba-8.0.10-150400.4.8.1 is installed
  • OR php8-devel-8.0.10-150400.4.8.1 is installed
  • OR php8-dom-8.0.10-150400.4.8.1 is installed
  • OR php8-embed-8.0.10-150400.4.8.1 is installed
  • OR php8-enchant-8.0.10-150400.4.8.1 is installed
  • OR php8-exif-8.0.10-150400.4.8.1 is installed
  • OR php8-fastcgi-8.0.10-150400.4.8.1 is installed
  • OR php8-fileinfo-8.0.10-150400.4.8.1 is installed
  • OR php8-fpm-8.0.10-150400.4.8.1 is installed
  • OR php8-ftp-8.0.10-150400.4.8.1 is installed
  • OR php8-gd-8.0.10-150400.4.8.1 is installed
  • OR php8-gettext-8.0.10-150400.4.8.1 is installed
  • OR php8-gmp-8.0.10-150400.4.8.1 is installed
  • OR php8-iconv-8.0.10-150400.4.8.1 is installed
  • OR php8-intl-8.0.10-150400.4.8.1 is installed
  • OR php8-ldap-8.0.10-150400.4.8.1 is installed
  • OR php8-mbstring-8.0.10-150400.4.8.1 is installed
  • OR php8-mysql-8.0.10-150400.4.8.1 is installed
  • OR php8-odbc-8.0.10-150400.4.8.1 is installed
  • OR php8-opcache-8.0.10-150400.4.8.1 is installed
  • OR php8-openssl-8.0.10-150400.4.8.1 is installed
  • OR php8-pcntl-8.0.10-150400.4.8.1 is installed
  • OR php8-pdo-8.0.10-150400.4.8.1 is installed
  • OR php8-pgsql-8.0.10-150400.4.8.1 is installed
  • OR php8-phar-8.0.10-150400.4.8.1 is installed
  • OR php8-posix-8.0.10-150400.4.8.1 is installed
  • OR php8-readline-8.0.10-150400.4.8.1 is installed
  • OR php8-shmop-8.0.10-150400.4.8.1 is installed
  • OR php8-snmp-8.0.10-150400.4.8.1 is installed
  • OR php8-soap-8.0.10-150400.4.8.1 is installed
  • OR php8-sockets-8.0.10-150400.4.8.1 is installed
  • OR php8-sodium-8.0.10-150400.4.8.1 is installed
  • OR php8-sqlite-8.0.10-150400.4.8.1 is installed
  • OR php8-sysvmsg-8.0.10-150400.4.8.1 is installed
  • OR php8-sysvsem-8.0.10-150400.4.8.1 is installed
  • OR php8-sysvshm-8.0.10-150400.4.8.1 is installed
  • OR php8-test-8.0.10-150400.4.8.1 is installed
  • OR php8-tidy-8.0.10-150400.4.8.1 is installed
  • OR php8-tokenizer-8.0.10-150400.4.8.1 is installed
  • OR php8-xmlreader-8.0.10-150400.4.8.1 is installed
  • OR php8-xmlwriter-8.0.10-150400.4.8.1 is installed
  • OR php8-xsl-8.0.10-150400.4.8.1 is installed
  • OR php8-zip-8.0.10-150400.4.8.1 is installed
  • OR php8-zlib-8.0.10-150400.4.8.1 is installed
  • BACK