Fedora 26 : php-symfony (2017-4fcbd8a4c3)

high Nessus Plugin ID 102025

Language:

Synopsis

The remote Fedora host is missing a security update.

Description

## 2.8.25 (2017-07-17)

- security #23507 [Security] validate empty passwords again (xabbuh)

- bug #23526 [HttpFoundation] Set meta refresh time to 0 in RedirectResponse content (jnvsor)

- bug #23540 Disable inlining deprecated services (alekitto)

- bug #23468 [DI] Handle root namespace in service definitions (ro0NL)

- bug #23256 [Security] Fix authentication.failure event not dispatched on AccountStatusException (chalasr)

- bug #23461 Use rawurlencode() to transform the Cookie into a string (javiereguiluz)

- bug #23459 [TwigBundle] allow to configure custom formats in XML configs (xabbuh)

- bug #23460 Don't display the Symfony debug toolbar when printing the page (javiereguiluz)

- bug #23261 Fixed absolute url generation for query strings and hash urls (alexander-schranz)

- bug #23398 [Filesystem] Dont copy perms when origin is remote (nicolas-grekas)

Note that Tenable Network Security has extracted the preceding description block directly from the Fedora update system website.
Tenable has attempted to automatically clean and format it as much as possible without introducing additional issues.

Solution

Update the affected php-symfony package.

See Also

https://bodhi.fedoraproject.org/updates/FEDORA-2017-4fcbd8a4c3

Plugin Details

Severity: High

ID: 102025

File Name: fedora_2017-4fcbd8a4c3.nasl

Version: 3.4

Type: local

Agent: unix

Published: 7/28/2017

Updated: 1/6/2021

Supported Sensors: Frictionless Assessment Agent, Nessus Agent, Agentless Assessment, Nessus

Vulnerability Information

CPE: p-cpe:/a:fedoraproject:fedora:php-symfony, cpe:/o:fedoraproject:fedora:26

Required KB Items: Host/local_checks_enabled, Host/RedHat/release, Host/RedHat/rpm-list

Patch Publication Date: 7/27/2017

Vulnerability Publication Date: 7/27/2017

Reference Information