This script is Copyright (C) 2009-2014 Tenable Network Security, Inc.
The remote openSUSE host is missing a security update.
Multiple issues have been fixed in php5 :
- php_openssl_apply_verification_policy() fails to verify
- 'missing sainity checks around exif' (CVE-2009-3292)
- unspecified vulnerability in the imagecolortransparent()
- denial of service in exif module (CVE-2009-2687)
Additionally we fixed :
- xmlparse was broken
- read_exif_data() only returns the first letter of UTF-16
Update the affected apache2-mod_php5 packages.
Risk factor :
High / CVSS Base Score : 7.5