Oval Definition:oval:org.opensuse.security:def:72906
Revision Date:2020-12-01Version:1
Title:Security update for php7 (Important)
Description:

This update for php7 fixes the following issues:

- CVE-2020-7062: Fixed a null pointer dereference when using file upload functionality under specific circumstances (bsc#1165280). - CVE-2020-7063: Fixed an issue where adding files change the permissions to default (bsc#1165289). - CVE-2020-7059: Fixed an out of bounds read in php_strip_tags_ex which may have led to denial of service (bsc#1162629). - CVE-2020-7060: Fixed a global buffer overflow in mbfl_filt_conv_big5_wchar which may have led to memory corruption (bsc#1162632).
Family:unixClass:patch
Status:Reference(s):1044231
1051510
1051858
1056686
1060463
1065729
1103990
1103992
1104353
1104745
1109837
1111666
1111974
1112178
1112374
1113956
1114279
1114685
1119680
1127611
1133021
1134090
1136157
1141895
1144333
1146539
1156510
1157424
1158187
1159285
1160659
1161561
1161951
1162629
1162632
1162928
1162929
1162931
1164078
1164507
1165111
1165280
1165289
1165404
1165488
1165527
1165741
1165813
1165873
1165929
1165950
1165980
1165984
1165985
1166003
1166101
1166102
1166103
1166104
1166632
1166658
1166730
1166731
1166732
1166733
1166734
1166735
CVE-2019-19768
CVE-2020-7059
CVE-2020-7060
CVE-2020-7062
CVE-2020-7063
CVE-2020-8647
CVE-2020-8648
CVE-2020-8649
CVE-2020-9383
SUSE-SU-2020:0622-1
SUSE-SU-2020:0836-1
Platform(s):SUSE Linux Enterprise Module for Web Scripting 15 SP1
SUSE Linux Enterprise Workstation Extension 15 SP1
Product(s):
Definition Synopsis
  • SUSE Linux Enterprise Module for Web Scripting 15 SP1 is installed
  • AND Package Information
  • apache2-mod_php7-7.2.5-4.52 is installed
  • OR php7-7.2.5-4.52 is installed
  • OR php7-bcmath-7.2.5-4.52 is installed
  • OR php7-bz2-7.2.5-4.52 is installed
  • OR php7-calendar-7.2.5-4.52 is installed
  • OR php7-ctype-7.2.5-4.52 is installed
  • OR php7-curl-7.2.5-4.52 is installed
  • OR php7-dba-7.2.5-4.52 is installed
  • OR php7-devel-7.2.5-4.52 is installed
  • OR php7-dom-7.2.5-4.52 is installed
  • OR php7-enchant-7.2.5-4.52 is installed
  • OR php7-exif-7.2.5-4.52 is installed
  • OR php7-fastcgi-7.2.5-4.52 is installed
  • OR php7-fileinfo-7.2.5-4.52 is installed
  • OR php7-fpm-7.2.5-4.52 is installed
  • OR php7-ftp-7.2.5-4.52 is installed
  • OR php7-gd-7.2.5-4.52 is installed
  • OR php7-gettext-7.2.5-4.52 is installed
  • OR php7-gmp-7.2.5-4.52 is installed
  • OR php7-iconv-7.2.5-4.52 is installed
  • OR php7-intl-7.2.5-4.52 is installed
  • OR php7-json-7.2.5-4.52 is installed
  • OR php7-ldap-7.2.5-4.52 is installed
  • OR php7-mbstring-7.2.5-4.52 is installed
  • OR php7-mysql-7.2.5-4.52 is installed
  • OR php7-odbc-7.2.5-4.52 is installed
  • OR php7-opcache-7.2.5-4.52 is installed
  • OR php7-openssl-7.2.5-4.52 is installed
  • OR php7-pcntl-7.2.5-4.52 is installed
  • OR php7-pdo-7.2.5-4.52 is installed
  • OR php7-pear-7.2.5-4.52 is installed
  • OR php7-pear-Archive_Tar-7.2.5-4.52 is installed
  • OR php7-pgsql-7.2.5-4.52 is installed
  • OR php7-phar-7.2.5-4.52 is installed
  • OR php7-posix-7.2.5-4.52 is installed
  • OR php7-shmop-7.2.5-4.52 is installed
  • OR php7-snmp-7.2.5-4.52 is installed
  • OR php7-soap-7.2.5-4.52 is installed
  • OR php7-sockets-7.2.5-4.52 is installed
  • OR php7-sodium-7.2.5-4.52 is installed
  • OR php7-sqlite-7.2.5-4.52 is installed
  • OR php7-sysvmsg-7.2.5-4.52 is installed
  • OR php7-sysvsem-7.2.5-4.52 is installed
  • OR php7-sysvshm-7.2.5-4.52 is installed
  • OR php7-tokenizer-7.2.5-4.52 is installed
  • OR php7-wddx-7.2.5-4.52 is installed
  • OR php7-xmlreader-7.2.5-4.52 is installed
  • OR php7-xmlrpc-7.2.5-4.52 is installed
  • OR php7-xmlwriter-7.2.5-4.52 is installed
  • OR php7-xsl-7.2.5-4.52 is installed
  • OR php7-zip-7.2.5-4.52 is installed
  • OR php7-zlib-7.2.5-4.52 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Workstation Extension 15 SP1 is installed
  • AND Package Information
  • kernel-default-4.12.14-197.37 is installed
  • OR kernel-default-extra-4.12.14-197.37 is installed
  • BACK