Vulnerability Bulletins

DSA-4552 php7.0 - security update


System information

   
Affected software Debian

Description

Emil Lerner and Andrew Danau discovered that insufficient validationin the path handling code of PHP FPM could result in the execution ofarbitrary code in some setups.

More info:

https://www.debian.org/security/2019/dsa-4552

Standar resources

Property Value
CVE CVE-2019-11043 and DSA-4552.

Version history

Version Comments Date
1.0 Advisory issued 2019-10-31
Ministerio de Defensa
CNI
CCN
CCN-CERT