Vulnerability Name:

CVE-2015-4021 (CCN-103517)

Assigned:2015-05-14
Published:2015-05-14
Updated:2019-04-22
Summary:The phar_parse_tarfile function in ext/phar/tar.c in PHP before 5.4.41, 5.5.x before 5.5.25, and 5.6.x before 5.6.9 does not verify that the first character of a filename is different from the \0 character, which allows remote attackers to cause a denial of service (integer underflow and memory corruption) via a crafted entry in a tar archive.
CVSS v3 Severity:7.3 High (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L)
Exploitability Metrics:Attack Vector (AV): Network
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): Low
Integrity (I): Low
Availibility (A): Low
CVSS v2 Severity:5.0 Medium (CVSS v2 Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P)
3.7 Low (Temporal CVSS v2 Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P/E:U/RL:OF/RC:C)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Authentication (Au): None
Impact Metrics:Confidentiality (C): None
Integrity (I): None
Availibility (A): Partial
6.8 Medium (CCN CVSS v2 Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P)
5.0 Medium (CCN Temporal CVSS v2 Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P/E:U/RL:OF/RC:C)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Medium
Athentication (Au): None
Impact Metrics:Confidentiality (C): Partial
Integrity (I): Partial
Availibility (A): Partial
5.1 Medium (REDHAT CVSS v2 Vector: AV:N/AC:H/Au:N/C:P/I:P/A:P)
3.8 Low (REDHAT Temporal CVSS v2 Vector: AV:N/AC:H/Au:N/C:P/I:P/A:P/E:U/RL:OF/RC:C)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): High
Authentication (Au): None
Impact Metrics:Confidentiality (C): Partial
Integrity (I): Partial
Availibility (A): Partial
Vulnerability Type:CWE-189
CWE-190
CWE-125
CWE-787
CWE-787
Vulnerability Consequences:Gain Access
References:Source: MITRE
Type: CNA
CVE-2015-4021

Source: APPLE
Type: UNKNOWN
APPLE-SA-2015-08-13-2

Source: FEDORA
Type: UNKNOWN
FEDORA-2015-8281

Source: FEDORA
Type: UNKNOWN
FEDORA-2015-8383

Source: FEDORA
Type: UNKNOWN
FEDORA-2015-8370

Source: SUSE
Type: UNKNOWN
openSUSE-SU-2015:0993

Source: CONFIRM
Type: Patch
http://php.net/ChangeLog-5.php

Source: CCN
Type: PHP Web site
Version 5.6.9

Source: REDHAT
Type: UNKNOWN
RHSA-2015:1135

Source: REDHAT
Type: UNKNOWN
RHSA-2015:1186

Source: REDHAT
Type: UNKNOWN
RHSA-2015:1187

Source: REDHAT
Type: UNKNOWN
RHSA-2015:1218

Source: REDHAT
Type: UNKNOWN
RHSA-2015:1219

Source: DEBIAN
Type: UNKNOWN
DSA-3280

Source: CONFIRM
Type: UNKNOWN
http://www.oracle.com/technetwork/topics/security/linuxbulletinjan2016-2867209.html

Source: BID
Type: UNKNOWN
74700

Source: CCN
Type: BID-74700
PHP PHAR 'phar_parse_tarfile()' Function Remote Memory Corruption Vulnerability

Source: SECTRACK
Type: UNKNOWN
1032433

Source: CONFIRM
Type: Exploit
https://bugs.php.net/bug.php?id=69453

Source: XF
Type: UNKNOWN
php-cve20154021-underflow(103517)

Source: GENTOO
Type: UNKNOWN
GLSA-201606-10

Source: CONFIRM
Type: UNKNOWN
https://support.apple.com/kb/HT205031

Source: CCN
Type: WhiteSource Vulnerability Database
CVE-2015-4021

Vulnerable Configuration:Configuration 1:
  • cpe:/o:redhat:enterprise_linux_desktop:7.0:*:*:*:*:*:*:*
  • OR cpe:/o:redhat:enterprise_linux_hpc_node:7.0:*:*:*:*:*:*:*
  • OR cpe:/o:redhat:enterprise_linux_hpc_node_eus:7.1:*:*:*:*:*:*:*
  • OR cpe:/o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*
  • OR cpe:/o:redhat:enterprise_linux_server_eus:7.1:*:*:*:*:*:*:*
  • OR cpe:/o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:*:*

  • Configuration 2:
  • cpe:/o:apple:mac_os_x:*:*:*:*:*:*:*:* (Version <= 10.10.4)

  • Configuration 3:
  • cpe:/o:redhat:enterprise_linux:6.0:*:*:*:*:*:*:*
  • OR cpe:/o:redhat:enterprise_linux:7.0:*:*:*:*:*:*:*

  • Configuration 4:
  • cpe:/a:php:php:5.4.39:*:*:*:*:*:*:*
  • OR cpe:/a:php:php:*:*:*:*:*:*:*:* (Version <= 5.4.40)
  • OR cpe:/a:php:php:5.5.0:-:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.5.0:alpha1:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.5.0:alpha2:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.5.0:alpha3:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.5.0:alpha4:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.5.0:alpha5:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.5.0:alpha6:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.5.0:beta1:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.5.0:beta2:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.5.0:beta3:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.5.0:beta4:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.5.0:rc1:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.5.0:rc2:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.5.1:*:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.5.2:-:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.5.3:*:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.5.4:-:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.5.5:-:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.5.6:-:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.5.7:-:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.5.8:-:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.5.9:-:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.5.10:-:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.5.11:-:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.5.12:-:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.5.13:-:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.5.14:-:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.5.18:-:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.5.19:-:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.5.20:-:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.5.21:-:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.5.22:-:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.5.23:-:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.5.24:-:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.6.0:alpha1:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.6.0:alpha2:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.6.0:alpha3:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.6.0:alpha4:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.6.0:alpha5:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.6.0:beta1:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.6.0:beta2:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.6.0:beta3:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.6.0:beta4:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.6.2:*:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.6.3:-:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.6.4:-:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.6.5:-:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.6.6:-:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.6.7:-:*:*:*:*:*:*
  • OR cpe:/a:php:php:5.6.8:-:*:*:*:*:*:*

  • Configuration RedHat 1:
  • cpe:/o:redhat:enterprise_linux:7:*:*:*:*:*:*:*

  • Configuration RedHat 2:
  • cpe:/o:redhat:enterprise_linux:7::client:*:*:*:*:*

  • Configuration RedHat 3:
  • cpe:/o:redhat:enterprise_linux:7::computenode:*:*:*:*:*

  • Configuration RedHat 4:
  • cpe:/o:redhat:enterprise_linux:7::server:*:*:*:*:*

  • Configuration RedHat 5:
  • cpe:/o:redhat:enterprise_linux:7::workstation:*:*:*:*:*

  • Configuration RedHat 6:
  • cpe:/o:redhat:enterprise_linux:6:*:*:*:*:*:*:*

  • Configuration RedHat 7:
  • cpe:/o:redhat:enterprise_linux:6::client:*:*:*:*:*

  • Configuration RedHat 8:
  • cpe:/o:redhat:enterprise_linux:6::computenode:*:*:*:*:*

  • Configuration RedHat 9:
  • cpe:/o:redhat:enterprise_linux:6::server:*:*:*:*:*

  • Configuration RedHat 10:
  • cpe:/o:redhat:enterprise_linux:6::workstation:*:*:*:*:*

  • Configuration CCN 1:
  • cpe:/a:php:php:5.4.0:-:*:*:*:*:*:*

  • * Denotes that component is vulnerable
    Oval Definitions
    Definition IDClassTitleLast Modified
    oval:org.opensuse.security:def:20154021
    V
    CVE-2015-4021
    2022-09-02
    oval:org.opensuse.security:def:9680
    P
    Security update for libsndfile (Important)
    2022-01-11
    oval:org.opensuse.security:def:10438
    P
    Security update for java-1_8_0-ibm (Important) (in QA)
    2022-01-04
    oval:org.opensuse.security:def:9884
    P
    Security update for go1.17 (Moderate)
    2021-12-23
    oval:org.opensuse.security:def:33758
    P
    Security update for xorg-x11-server (Important)
    2021-12-20
    oval:org.opensuse.security:def:9634
    P
    Security update for log4j (Important)
    2021-12-17
    oval:org.opensuse.security:def:34609
    P
    Security update for mozilla-nss (Important)
    2021-12-06
    oval:org.opensuse.security:def:10371
    P
    Security update for the Linux Kernel (Important)
    2021-12-02
    oval:org.opensuse.security:def:10368
    P
    Security update for ruby2.5 (Important)
    2021-12-01
    oval:org.opensuse.security:def:9619
    P
    Security update for python-Pygments (Important)
    2021-12-01
    oval:org.opensuse.security:def:33049
    P
    Security update for java-1_7_0-openjdk (Important)
    2021-11-24
    oval:org.opensuse.security:def:10175
    P
    Security update for webkit2gtk3 (Important)
    2021-11-23
    oval:org.opensuse.security:def:32218
    P
    Security update for the Linux Kernel (Live Patch 36 for SLE 12 SP3) (Important)
    2021-11-19
    oval:org.opensuse.security:def:26163
    P
    Security update for bind (Important)
    2021-11-11
    oval:org.opensuse.security:def:9417
    P
    Security update for MozillaFirefox (Important)
    2021-11-10
    oval:org.opensuse.security:def:9612
    P
    Security update for MozillaFirefox (Important)
    2021-11-10
    oval:org.opensuse.security:def:9604
    P
    Security update for dnsmasq (Moderate)
    2021-10-27
    oval:org.opensuse.security:def:10169
    P
    Security update for Salt (Moderate)
    2021-10-27
    oval:org.opensuse.security:def:10162
    P
    Security update for glibc (Moderate)
    2021-10-12
    oval:org.opensuse.security:def:10346
    P
    Security update for curl (Moderate)
    2021-10-06
    oval:org.opensuse.security:def:29423
    P
    Security update for openssl (Low)
    2021-09-20
    oval:org.opensuse.security:def:33971
    P
    Security update for openssl-1_0_0 (Low)
    2021-09-09
    oval:org.opensuse.security:def:10153
    P
    Security update for openssl-1_0_0 (Low)
    2021-09-09
    oval:org.opensuse.security:def:9395
    P
    Security update for libesmtp (Important)
    2021-09-03
    oval:org.opensuse.security:def:10147
    P
    Security update for xerces-c (Important)
    2021-09-02
    oval:org.opensuse.security:def:11120
    P
    Security update for libspf2 (Critical)
    2021-08-25
    oval:org.opensuse.security:def:10139
    P
    Security update for djvulibre (Important)
    2021-08-20
    oval:org.opensuse.security:def:9387
    P
    Security update for spice-vdagent (Moderate)
    2021-08-20
    oval:org.opensuse.security:def:14927
    P
    iputils-s20121221-2.17 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:14174
    P
    java-1_7_0-openjdk-1.7.0.141-42.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:13928
    P
    libmodplug1-0.8.8.4-13.63 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:14267
    P
    libopus0-1.1-3.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:14062
    P
    xf86-video-intel-2.99.917.641_ge4ef6e9-12.3 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:14199
    P
    libXpm4-3.5.11-5.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:14243
    P
    libjbig2-2.0-12.13 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:13996
    P
    pam-1.1.8-14.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:32162
    P
    Security update for libcares2 (Important)
    2021-08-16
    oval:org.opensuse.security:def:14905
    P
    gnome-shell-search-provider-nautilus-3.20.3-23.12.10 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:14081
    P
    apache-commons-daemon-1.0.15-6.10 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:13898
    P
    libfreebl3-3.21.1-46.2 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:13906
    P
    libgypsy0-0.9-6.22 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:14254
    P
    libmicrohttpd10-0.9.30-5.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:14044
    P
    sysvinit-tools-2.88+-96.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:26099
    P
    Security update for libsndfile (Critical)
    2021-08-05
    oval:org.opensuse.security:def:9761
    P
    Security update for nodejs8 (Important)
    2021-08-05
    oval:org.opensuse.security:def:11098
    P
    Security update for claws-mail (Moderate)
    2021-07-16
    oval:org.opensuse.security:def:26088
    P
    Security update for the Linux Kernel (Important)
    2021-07-14
    oval:org.opensuse.security:def:10296
    P
    Security update for go1.15 (Important)
    2021-06-30
    oval:org.opensuse.security:def:9544
    P
    Security update for ovmf (Important)
    2021-06-25
    oval:org.opensuse.security:def:9742
    P
    Security update for openexr (Important)
    2021-06-24
    oval:org.opensuse.security:def:10111
    P
    Security update for openexr (Important)
    2021-06-24
    oval:org.opensuse.security:def:10277
    P
    Security update for spice-gtk (Moderate)
    2021-06-10
    oval:org.opensuse.security:def:9727
    P
    Security update for ucode-intel (Important)
    2021-06-10
    oval:org.opensuse.security:def:33927
    P
    Security update for caribou (Important)
    2021-06-10
    oval:org.opensuse.security:def:31638
    P
    Security update for caribou (Important)
    2021-06-10
    oval:org.opensuse.security:def:9525
    P
    Security update for qemu (Important)
    2021-06-09
    oval:org.opensuse.security:def:16439
    P
    gimp-devel-2.8.18-9.3.26 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:16447
    P
    gstreamer-0_10-plugins-bad-devel-0.10.23-25.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:42493
    P
    apache2-mod_php53-5.3.17-0.41.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:16623
    P
    net-snmp-devel-5.7.3-6.3.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:16098
    P
    php5-devel-5.5.14-73.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:124640
    P
    php5-devel-5.5.14-109.41.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:36086
    P
    apache2-mod_php53-5.3.17-0.41.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:16481
    P
    libXres-devel-1.0.7-3.53 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:16348
    P
    php5-devel-5.5.14-108.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:16654
    P
    slf4j-1.7.12-3.3.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:36538
    P
    php53-devel-5.3.17-0.41.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:16634
    P
    php5-devel-5.5.14-109.41.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:16566
    P
    libpulse-devel-5.0-4.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:15880
    P
    php5-devel-5.5.14-39.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:10086
    P
    Security update for dhcp (Important)
    2021-06-02
    oval:org.opensuse.security:def:10262
    P
    Security update for curl (Moderate)
    2021-05-31
    oval:org.opensuse.security:def:9708
    P
    Security update for lz4 (Important)
    2021-05-19
    oval:org.opensuse.security:def:9510
    P
    Security update for djvulibre (Important)
    2021-05-19
    oval:org.opensuse.security:def:33903
    P
    Security update for samba (Important)
    2021-05-04
    oval:org.opensuse.security:def:9695
    P
    Security update for xen (Important)
    2021-04-30
    oval:org.opensuse.security:def:9686
    P
    Security update for spamassassin (Important)
    2021-04-13
    oval:org.opensuse.security:def:26212
    P
    Security update for python3 (Moderate)
    2021-03-19
    oval:org.opensuse.security:def:9862
    P
    Security update for openssl-1_1 (Moderate)
    2021-03-09
    oval:org.opensuse.security:def:9861
    P
    Security update for the Linux Kernel (Important)
    2021-03-09
    oval:org.opensuse.security:def:34649
    P
    Security update for the Linux Kernel (Important)
    2021-03-09
    oval:org.opensuse.security:def:9463
    P
    Security update for openldap2 (Important)
    2021-03-08
    oval:org.opensuse.security:def:10215
    P
    Security update for python-cryptography (Important)
    2021-03-03
    oval:org.opensuse.security:def:29480
    P
    Security update for openldap2 (Important)
    2021-03-03
    oval:org.opensuse.security:def:9854
    P
    Security update for grub2 (Important)
    2021-03-02
    oval:org.opensuse.security:def:32267
    P
    Security update for grub2 (Important)
    2021-03-02
    oval:org.opensuse.security:def:38656
    P
    Security update for MozillaFirefox (Important)
    2021-03-01
    oval:org.opensuse.security:def:10396
    P
    Security update for php7 (Important)
    2021-02-24
    oval:org.opensuse.security:def:9644
    P
    Security update for the Linux Kernel (Important)
    2021-02-19
    oval:org.opensuse.security:def:9836
    P
    Security update for subversion (Important)
    2021-02-10
    oval:org.opensuse.security:def:26087
    P
    Security update for sudo (Important)
    2021-01-26
    oval:org.opensuse.security:def:38723
    P
    Security update for avahi (Moderate)
    2021-01-18
    oval:org.opensuse.security:def:33010
    P
    Security update for java-1_8_0-ibm (Moderate)
    2021-01-05
    oval:org.opensuse.security:def:38298
    P
    Security update for python (Moderate)
    2021-01-05
    oval:org.opensuse.security:def:26061
    P
    Security update for dovecot22 (Important)
    2021-01-04
    oval:org.opensuse.security:def:25977
    P
    Security update for openssl-1_1 (Important)
    2020-12-10
    oval:org.opensuse.security:def:10585
    P
    Security update for the Linux Kernel (Important)
    2020-12-09
    oval:org.opensuse.security:def:32006
    P
    Security update for mutt (Important)
    2020-12-07
    oval:org.opensuse.security:def:16901
    P
    libtiff-devel-4.0.9-44.30.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:16800
    P
    libcdio++0-0.90-6.3.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:16923
    P
    libzypp-devel-16.20.0-2.39.4 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:16832
    P
    libjavascriptcoregtk-1_0-0-2.4.11-23.20 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:16889
    P
    libsolv-devel-0.6.36-2.16.2 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:16690
    P
    audiofile-devel-0.3.6-11.3.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:31553
    P
    Security update for sqlite3 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:9930
    P
    libupsclient1 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26513
    P
    Security update for chromium (Important)
    2020-12-01
    oval:org.opensuse.security:def:33226
    P
    pcsc-ccid on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:29772
    P
    Security update for glibc (Important)
    2020-12-01
    oval:org.opensuse.security:def:9912
    P
    libqt4 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27084
    P
    apache2-mod_php53 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:38240
    P
    libHX28 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32306
    P
    Security update for python (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:10813
    P
    libxml2-devel on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:29860
    P
    Security update for the Linux Kernel
    2020-12-01
    oval:org.opensuse.security:def:31770
    P
    Security update for MozillaFirefox, mozilla-nss, mozilla-nspr (Important)
    2020-12-01
    oval:org.opensuse.security:def:10011
    P
    vsftpd on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26766
    P
    libsamplerate on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:39447
    P
    Security update for php5 (Important)
    2020-12-01
    oval:org.opensuse.security:def:25636
    P
    Security update for libproxy (Important)
    2020-12-01
    oval:org.opensuse.security:def:29337
    P
    Security update for spacewalk
    2020-12-01
    oval:org.opensuse.security:def:33513
    P
    Security update for perl-HTML-Parser
    2020-12-01
    oval:org.opensuse.security:def:38548
    P
    at on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26819
    P
    ruby on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25711
    P
    Security update for python-aws-sam-translator, python-boto3, python-botocore, python-cfn-lint, python-jsonschema, python-nose2, python-parameterized, python-pathlib2, python-pytest-cov, python-requests, python-s3transfer (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:30560
    P
    Security update for OpenSSL
    2020-12-01
    oval:org.opensuse.security:def:26372
    P
    Recommended update for geotiff (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:33136
    P
    libQtWebKit4-32bit on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:29565
    P
    Security update for OpenEXR (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:33815
    P
    Security update for glib2 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26411
    P
    Security update for go (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:17587
    P
    Security update for php5 (Important)
    2020-12-01
    oval:org.opensuse.security:def:31552
    P
    Security update for socat (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:38001
    P
    mailx on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27536
    P
    php53-devel on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:29125
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:31564
    P
    Security update for squid3 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:9977
    P
    python-pywbem on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26664
    P
    aaa_base on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:38767
    P
    pam_ssh on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:29137
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:33361
    P
    Security update for openssl1 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:29821
    P
    Security update for java-1_6_0-ibm (Important)
    2020-12-01
    oval:org.opensuse.security:def:9925
    P
    libtasn1 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32328
    P
    Security update for samba (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:10835
    P
    php5-devel on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26265
    P
    Security update for guile (Low)
    2020-12-01
    oval:org.opensuse.security:def:29878
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:31862
    P
    Security update for curl (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:33601
    P
    Security update for MozillaFirefox (Important)
    2020-12-01
    oval:org.opensuse.security:def:26353
    P
    Security update for tor (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:37906
    P
    libkde4-32bit on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:38607
    P
    gnome-settings-daemon on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26863
    P
    apache2-mod_jk on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:33135
    P
    libMagickCore1-32bit on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25839
    P
    Security update for gimp (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:10447
    P
    gnome-settings-daemon-devel on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:30597
    P
    Security update for php53 (Important)
    2020-12-01
    oval:org.opensuse.security:def:26429
    P
    Security update for keepalived (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:38695
    P
    liblua5_2 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:33147
    P
    libexif on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:29718
    P
    Security update for MozillaFirefox
    2020-12-01
    oval:org.opensuse.security:def:9903
    P
    libpng15-15 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27049
    P
    unzip on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:38138
    P
    bash on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:29126
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:9992
    P
    squid on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26717
    P
    gzip on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:39405
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:25635
    P
    Security update for tigervnc (Critical)
    2020-12-01
    oval:org.opensuse.security:def:29206
    P
    Security update for openssl (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:33456
    P
    Security update for icu
    2020-12-01
    oval:org.opensuse.security:def:10563
    P
    libxcb-composite0 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:38388
    P
    libupsclient1 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26805
    P
    perl-Tk on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32372
    P
    Security update for tcpdump (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25647
    P
    Security update for freetype2 (Important)
    2020-12-01
    oval:org.opensuse.security:def:26314
    P
    Security update for iperf (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:29922
    P
    Security update for libexif (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:37905
    P
    libjson-c2 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26291
    P
    Security update for python-reportlab (Important)
    2020-12-01
    oval:org.opensuse.security:def:31919
    P
    Security update for ghostscript-library (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26367
    P
    Security update for MozillaThunderbird (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:17561
    P
    Security update for DirectFB (Important)
    2020-12-01
    oval:org.opensuse.security:def:37917
    P
    libmms0 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27501
    P
    libwmf on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25920
    P
    Security update for gstreamer-plugins-base (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:33864
    P
    Security update for jasper
    2020-12-01
    oval:org.opensuse.security:def:10460
    P
    lhasa-devel on GA media (Moderate)
    2020-12-01
    oval:org.cisecurity:def:250
    P
    DSA-3280-1 -- php5 -- security update
    2016-02-08
    oval:com.redhat.rhsa:def:20151218
    P
    RHSA-2015:1218: php security update (Moderate)
    2015-07-09
    oval:com.redhat.rhsa:def:20151135
    P
    RHSA-2015:1135: php security and bug fix update (Important)
    2015-06-23
    oval:com.ubuntu.precise:def:20154021000
    V
    CVE-2015-4021 on Ubuntu 12.04 LTS (precise) - low.
    2015-06-09
    oval:com.ubuntu.trusty:def:20154021000
    V
    CVE-2015-4021 on Ubuntu 14.04 LTS (trusty) - low.
    2015-06-09
    BACK
    redhat enterprise linux desktop 7.0
    redhat enterprise linux hpc node 7.0
    redhat enterprise linux hpc node eus 7.1
    redhat enterprise linux server 7.0
    redhat enterprise linux server eus 7.1
    redhat enterprise linux workstation 7.0
    apple mac os x *
    redhat enterprise linux 6.0
    redhat enterprise linux 7.0
    php php 5.4.39
    php php *
    php php 5.5.0
    php php 5.5.0 alpha1
    php php 5.5.0 alpha2
    php php 5.5.0 alpha3
    php php 5.5.0 alpha4
    php php 5.5.0 alpha5
    php php 5.5.0 alpha6
    php php 5.5.0 beta1
    php php 5.5.0 beta2
    php php 5.5.0 beta3
    php php 5.5.0 beta4
    php php 5.5.0 rc1
    php php 5.5.0 rc2
    php php 5.5.1
    php php 5.5.2
    php php 5.5.3
    php php 5.5.4
    php php 5.5.5
    php php 5.5.6
    php php 5.5.7
    php php 5.5.8
    php php 5.5.9
    php php 5.5.10
    php php 5.5.11
    php php 5.5.12
    php php 5.5.13
    php php 5.5.14
    php php 5.5.18
    php php 5.5.19
    php php 5.5.20
    php php 5.5.21
    php php 5.5.22
    php php 5.5.23
    php php 5.5.24
    php php 5.6.0 alpha1
    php php 5.6.0 alpha2
    php php 5.6.0 alpha3
    php php 5.6.0 alpha4
    php php 5.6.0 alpha5
    php php 5.6.0 beta1
    php php 5.6.0 beta2
    php php 5.6.0 beta3
    php php 5.6.0 beta4
    php php 5.6.2
    php php 5.6.3
    php php 5.6.4
    php php 5.6.5
    php php 5.6.6
    php php 5.6.7
    php php 5.6.8
    php php 5.4.0