This script is Copyright (C) 2009-2012 Tenable Network Security, Inc.
The remote SuSE 10 host is missing a security-related patch.
Multiple issues have been fixed in php5 :
- php_openssl_apply_verification_policy() fails to verify
- 'missing sainity checks around exif'. (CVE-2009-3292)
- unspecified vulnerability in the
- denial of service in exif module (CVE-2009-2687)
Additionally we fixed :
- xmlparse was broken
- read_exif_data() only returns the first letter of UTF-16
See also :
Apply ZYPP patch number 6510.
Risk factor :
High / CVSS Base Score : 7.5