SUSE-SU-2016:1633-1

Advisory lineage Upstream: 8 Downstream: 0
Published: 20 Jun 2016, 10:27
Last modified:04 Feb 2026, 04:36

Vulnerability Summary

Overall Risk (default)
minimal
0/100
CVSS Score
No data
EPSS Score
No data
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected

Timeline

20 Jun 2016, 10:27
Published
Vulnerability first disclosed
04 Feb 2026, 04:36
Last Modified
Vulnerability information updated

Description

Security update for php5 This update for php5 fixes the following issues: - CVE-2013-7456: imagescale out-of-bounds read (bnc#982009). - CVE-2016-5093: get_icu_value_internal out-of-bounds read (bnc#982010). - CVE-2016-5094: Don't create strings with lengths outside of valid range (bnc#982011). - CVE-2016-5095: Don't create strings with lengths outside of valid range (bnc#982012). - CVE-2016-5096: int/size_t confusion in fread (bsc#982013). - CVE-2015-8877: The gdImageScaleTwoPass function in gd_interpolation.c in the GD Graphics Library (aka libgd) as used in PHP used inconsistent allocate and free approaches, which allowed remote attackers to cause a denial of service (memory consumption) via a crafted call, as demonstrated by a call to the PHP imagescale function (bsc#981061). - CVE-2015-8876: Zend/zend_exceptions.c in PHP did not validate certain Exception objects, which allowed remote attackers to cause a denial of service (NULL pointer dereference and application crash) or trigger unintended method execution via crafted serialized data (bsc#981049). - CVE-2015-8879: The odbc_bindcols function in ext/odbc/php_odbc.c in PHP mishandles driver behavior for SQL_WVARCHAR columns, which allowed remote attackers to cause a denial of service (application crash) in opportunistic circumstances by leveraging use of the odbc_fetch_array function to access a certain type of Microsoft SQL Server table (bsc#981050).

Affected Systems

  • suseimap&distro=SUSE Linux Enterprise Desktop 12

    < 2007e_suse-19.1

  • suseimap&distro=SUSE Linux Enterprise Desktop 12 SP1

    < 2007e_suse-19.1

  • suseimap&distro=SUSE Linux Enterprise Module for Web and Scripting 12

    < 2007e_suse-19.1

  • suseimap&distro=SUSE Linux Enterprise Software Development Kit 12

    < 2007e_suse-19.1

  • suseimap&distro=SUSE Linux Enterprise Software Development Kit 12 SP1

    < 2007e_suse-19.1

  • suseimap&distro=SUSE Linux Enterprise Workstation Extension 12

    < 2007e_suse-19.1

  • suseimap&distro=SUSE Linux Enterprise Workstation Extension 12 SP1

    < 2007e_suse-19.1

  • susephp5&distro=SUSE Linux Enterprise Module for Web and Scripting 12

    < 5.5.14-64.5

  • susephp5&distro=SUSE Linux Enterprise Software Development Kit 12

    < 5.5.14-64.5

  • susephp5&distro=SUSE Linux Enterprise Software Development Kit 12 SP1

    < 5.5.14-64.5

References (17)