MGASA-2020-0236

Advisory lineage Upstream: 1 Downstream: 0
Upstream
Published: 27 May 2020, 18:17
Last modified:16 Apr 2026, 04:25

Vulnerability Summary

Overall Risk (default)
minimal
0/100
CVSS Score
No data
EPSS Score
No data
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected

Timeline

27 May 2020, 18:17
Published
Vulnerability first disclosed
16 Apr 2026, 04:25
Last Modified
Vulnerability information updated

Description

Updated php packages fix security vulnerability Updated php packages fix security vulnerabilities: - Fixed bug #78875 (Long filenames cause OOM and temp files are not cleaned). [1] - Fixed bug #78876 (Long variables in multipart/form-data cause OOM and temp files are not cleaned). [2] - Fixed bug #79441 (Segfault in mb_chr() if internal encoding is unsupported). - Fixed bug #79491 (Search for .user.iniFixed bug #79468 (SIGSEGV when closing stream handle with a stream filter appended). extends up to root dir).

Affected Systems

  • mageiaphp

    < 7.3.18-1.mga7

References (3)