Fedora 14 : maniadrive-1.2-23.fc14 / php-5.3.4-1.fc14.1 / php-eaccelerator-0.9.6.1-3.fc14 (2010-18976)

medium Nessus Plugin ID 51412
New! Plugin Severity Now Using CVSS v3

The calculated severity for Plugins has been updated to use CVSS v3 by default. Plugins that do not have a CVSS v3 score will fall back to CVSS v2 for calculating severity. Severity display preferences can be toggled in the settings dropdown.

Synopsis

The remote Fedora host is missing one or more security updates.

Description

Security Enhancements and Fixes in PHP 5.3.4 :

- Fixed crash in zip extract method (possible CWE-170).

- Paths with NULL in them (foo\0bar.txt) are now considered as invalid (CVE-2006-7243).

- Fixed a possible double free in imap extension (Identified by Mateusz Kocielski). (CVE-2010-4150).

- Fixed NULL pointer dereference in ZipArchive::getArchiveComment. (CVE-2010-3709).

- Fixed possible flaw in open_basedir (CVE-2010-3436).

- Fixed MOPS-2010-24, fix string validation.
(CVE-2010-2950).

- Fixed symbolic resolution support when the target is a DFS share.

- Fixed bug #52929 (Segfault in filter_var with FILTER_VALIDATE_EMAIL with large amount of data) (CVE-2010-3710).

Key Bug Fixes in PHP 5.3.4 include :

- Added stat support for zip stream.

- Added follow_location (enabled by default) option for the http stream support.

- Added a 3rd parameter to get_html_translation_table.
It now takes a charset hint, like htmlentities et al.

- Implemented FR #52348, added new constant ZEND_MULTIBYTE to detect zend multibyte at runtime.

Full upstream Changelog : http://www.php.net/ChangeLog-5.php#5.3.4

This update also provides php-eaccelerator and maniadrive packages rebuild against update php.

Note that Tenable Network Security has extracted the preceding description block directly from the Fedora security advisory. Tenable has attempted to automatically clean and format it as much as possible without introducing additional issues.

Solution

Update the affected maniadrive, php and / or php-eaccelerator packages.

See Also

http://www.php.net/ChangeLog-5.php#5.3.4

https://bugzilla.redhat.com/show_bug.cgi?id=646684

https://bugzilla.redhat.com/show_bug.cgi?id=649056

https://bugzilla.redhat.com/show_bug.cgi?id=651206

https://bugzilla.redhat.com/show_bug.cgi?id=651682

https://bugzilla.redhat.com/show_bug.cgi?id=652836

https://bugzilla.redhat.com/show_bug.cgi?id=656917

https://bugzilla.redhat.com/show_bug.cgi?id=660382

http://www.nessus.org/u?730c2771

http://www.nessus.org/u?7a183384

http://www.nessus.org/u?85fdc87e

Plugin Details

Severity: Medium

ID: 51412

File Name: fedora_2010-18976.nasl

Version: 1.14

Type: local

Agent: unix

Published: 1/5/2011

Updated: 1/11/2021

Dependencies: ssh_get_info.nasl

Risk Information

VPR

Risk Factor: Medium

Score: 6.7

CVSS v2

Risk Factor: Medium

Base Score: 6.8

Temporal Score: 5.3

Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Temporal Vector: E:POC/RL:OF/RC:C

Vulnerability Information

CPE: p-cpe:/a:fedoraproject:fedora:maniadrive, p-cpe:/a:fedoraproject:fedora:php, p-cpe:/a:fedoraproject:fedora:php-eaccelerator, cpe:/o:fedoraproject:fedora:14

Required KB Items: Host/local_checks_enabled, Host/RedHat/release, Host/RedHat/rpm-list

Exploit Available: true

Exploit Ease: Exploits are available

Patch Publication Date: 12/17/2010

Vulnerability Publication Date: 10/25/2010

Reference Information

CVE: CVE-2009-5016, CVE-2010-3709, CVE-2010-3710, CVE-2010-3870, CVE-2010-4150, CVE-2010-4156, CVE-2010-4409

BID: 43926, 44605, 44718, 44727, 44889, 44980, 45119

FEDORA: 2010-18976