[Git][security-tracker-team/security-tracker][master] Add CVE-2020-7060/php*

Salvatore Bonaccorso carnil at debian.org
Tue Feb 4 07:12:39 GMT 2020



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
d8b53d2d by Salvatore Bonaccorso at 2020-02-04T08:12:11+01:00
Add CVE-2020-7060/php*

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -3347,8 +3347,14 @@ CVE-2020-7062
 	RESERVED
 CVE-2020-7061
 	RESERVED
-CVE-2020-7060
+CVE-2020-7060 [Global buffer-overflow in mbfl_filt_conv_big5_wchar function]
 	RESERVED
+	- php7.4 <unfixed>
+	- php7.3 <unfixed>
+	- php7.0 <removed>
+	- php5 <removed>
+	NOTE: Fixed in PHP 7.4.2, 7.2.27
+	NOTE: PHP Bug: http://bugs.php.net/79037
 CVE-2020-7059
 	RESERVED
 CVE-2020-7058 (** DISPUTED ** data_input.php in Cacti 1.2.8 allows remote code execut ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/d8b53d2d699e11a83e5f9f75492bfb33f5a1bbd8

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/d8b53d2d699e11a83e5f9f75492bfb33f5a1bbd8
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20200204/bcb4e865/attachment.html>


More information about the debian-security-tracker-commits mailing list