php

Page content
  • Author: kikadf
  • Vulnerable: 5.3.26-2arcturus3
  • Unaffected: 5.3.26-2arcturus4

Francisco Alonso of the Red Hat Security Response Team reported an incorrect boundary check in the cdf_read_short_sector() function. Francisco Alonso of the Red Hat Security Response Team discovered a flaw in the way the truncated pascal string size in the mconvert() function is computed. Francisco Alonso of the Red Hat Security Response Team reported an incorrect boundary check in the cdf_check_stream_offset() function. rancisco Alonso of the Red Hat Security Response Team reported an insufficient boundary check in the cdf_count_chain() function. Francisco Alonso of the Red Hat Security Response Team discovered an incorrect boundary check in the cdf_read_property_info() funtion. Stefan Esser discovered a type confusion issue affecting phpinfo(), which might allow an attacker to obtain sensitive information from process memory.

CVEs: