Bugzilla – Bug 880904
VUL-0: CVE-2014-0238: php53: DoS in Fileinfo component
Last modified: 2014-07-07 15:26:44 UTC
The cdf_read_property_info function in cdf.c in the Fileinfo component in PHP before 5.4.29 and 5.5.x before 5.5.13 allows remote attackers to cause a denial of service (infinite loop or out-of-bounds memory access) via a vector that (1) has zero length or (2) is too long. References: https://bugzilla.redhat.com/show_bug.cgi?id=1098155 http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2014-0238 http://www.debian.org/security/2014/dsa-2943 http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-0238 https://bugs.php.net/bug.php?id=67327 https://github.com/file/file/commit/f97486ef5dc3e8735440edc4fc8808c63e1a3ef0
Commit in https://bugzilla.redhat.com/show_bug.cgi?id=1098155#c5
php 5.5.13 submitted into factory. devel:languages:php:php54/php5 updated to 5.4.29.
For php 5.2, fileinfo extension doesn't exist.
Packages submitted into php53/11sp2, php53/11sp3, php5/12.3, php5/13.1, php5/sle12.
Affected packages: SLE-11-SP3: php53
An update workflow for this issue was started. This issue was rated as moderate. Please submit fixed packages until 2014-06-17. When done, reassign the bug to security-team@suse.de. https://swamp.suse.de/webswamp/wf/57647
openSUSE-SU-2014:0784-1: An update that fixes four vulnerabilities is now available. Category: security (moderate) Bug References: 868624,875826,880904,880905 CVE References: CVE-2014-0185,CVE-2014-0237,CVE-2014-0238,CVE-2014-2497 Sources used: openSUSE 13.1 (src): php5-5.4.20-8.2 openSUSE 12.3 (src): php5-5.3.17-3.12.2 openSUSE 12.2 (src): php5-5.3.15-1.25.1
openSUSE-SU-2014:0786-1: An update that fixes four vulnerabilities is now available. Category: security (moderate) Bug References: 868624,875826,880904,880905 CVE References: CVE-2014-0185,CVE-2014-0237,CVE-2014-0238,CVE-2014-2497 Sources used: openSUSE 11.4 (src): php5-5.3.5-363.2
Handled in MaintenanceTracker-57886
Update released for: apache2-mod_php53, php53, php53-bcmath, php53-bz2, php53-calendar, php53-ctype, php53-curl, php53-dba, php53-debuginfo, php53-debugsource, php53-devel, php53-dom, php53-enchant, php53-exif, php53-fastcgi, php53-fileinfo, php53-fpm, php53-ftp, php53-gd, php53-gettext, php53-gmp, php53-iconv, php53-imap, php53-intl, php53-json, php53-ldap, php53-mbstring, php53-mcrypt, php53-mysql, php53-odbc, php53-openssl, php53-pcntl, php53-pdo, php53-pear, php53-pgsql, php53-phar, php53-posix, php53-pspell, php53-readline, php53-shmop, php53-snmp, php53-soap, php53-sockets, php53-sqlite, php53-suhosin, php53-sysvmsg, php53-sysvsem, php53-sysvshm, php53-tidy, php53-tokenizer, php53-wddx, php53-xmlreader, php53-xmlrpc, php53-xmlwriter, php53-xsl, php53-zip, php53-zlib Products: SLE-DEBUGINFO 11-SP2 (i386, s390x, x86_64) SLE-SERVER 11-SP2-LTSS (i386, s390x, x86_64)
Update released for: apache2-mod_php53, php53, php53-bcmath, php53-bz2, php53-calendar, php53-ctype, php53-curl, php53-dba, php53-debuginfo, php53-debugsource, php53-devel, php53-dom, php53-enchant, php53-exif, php53-fastcgi, php53-fileinfo, php53-fpm, php53-ftp, php53-gd, php53-gettext, php53-gmp, php53-iconv, php53-imap, php53-intl, php53-json, php53-ldap, php53-mbstring, php53-mcrypt, php53-mysql, php53-odbc, php53-openssl, php53-pcntl, php53-pdo, php53-pear, php53-pgsql, php53-phar, php53-posix, php53-pspell, php53-readline, php53-shmop, php53-snmp, php53-soap, php53-sockets, php53-sqlite, php53-suhosin, php53-sysvmsg, php53-sysvsem, php53-sysvshm, php53-tidy, php53-tokenizer, php53-wddx, php53-xmlreader, php53-xmlrpc, php53-xmlwriter, php53-xsl, php53-zip, php53-zlib Products: SLE-DEBUGINFO 11-SP3 (i386, ia64, ppc64, s390x, x86_64) SLE-SDK 11-SP3 (i386, ia64, ppc64, s390x, x86_64) SLE-SERVER 11-SP3 (i386, ia64, ppc64, s390x, x86_64) SLES4VMWARE 11-SP3 (i386, x86_64)
SUSE-SU-2014:0869-1: An update that fixes four vulnerabilities is now available. Category: security (important) Bug References: 868624,880904,880905,882992 CVE References: CVE-2014-0237,CVE-2014-0238,CVE-2014-2497,CVE-2014-4049 Sources used: SUSE Linux Enterprise Software Development Kit 11 SP3 (src): php53-5.3.17-0.23.5 SUSE Linux Enterprise Server 11 SP3 for VMware (src): php53-5.3.17-0.23.5 SUSE Linux Enterprise Server 11 SP3 (src): php53-5.3.17-0.23.5 SUSE Linux Enterprise Server 11 SP2 LTSS (src): php53-5.3.8-0.45.1
released