There are couple more heading our way:
https://bugs.php.net/bug.php?id=68976
Sec Bug #68976 Use After Free Vulnerability in unserialize()
and https://bugs.php.net/bug.php?id=69133
Sec Bug #69133 Use after free vulnerability in unserialize() with
DateInterval
also https://bugs.php.net/bug.ph
Source: php5
Severity: grave
Tags: security
This has been assigned CVE-2015-2331:
https://bugs.php.net/bug.php?id=69253
https://github.com/php/php-src/commit/ef8fc4b53d92fbfcd8ef1abbd6f2f5fe2c4a11e5
Cheers,
Moritz
--
To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org
wit
2 matches
Mail list logo