diff --git a/security/vuxml/vuln.xml b/security/vuxml/vuln.xml index a5407c141861..af595ef16577 100644 --- a/security/vuxml/vuln.xml +++ b/security/vuxml/vuln.xml @@ -58,6 +58,43 @@ Notes: * Do not forget port variants (linux-f10-libxml2, libxml2, etc.) --> + + PHP -- Multiple vulnerabilities in EXIF module + + + php71-exif + 7.1.28 + + + php72-exif + 7.2.17 + + + php73-exif + 7.3.4 + + + + + +

The PHP project reports:

+
+

Heap-buffer-overflow in php_ifd_get32s (CVE-2019-11034)

+

Heap-buffer-overflow in exif_iif_add_value (CVE-2019-11035)

+
+ +
+ + https://www.php.net/ChangeLog-7.php + CVE-2019-11034 + CVE-2019-11035 + + + 2019-04-04 + 2019-05-11 + +
+ PostgreSQL -- Selectivity estimators bypass row security policies