File _patchinfo of Package patchinfo.6163
<patchinfo incident="6163"> <issue id="1015189" tracker="bnc">VUL-0: CVE-2016-9935: php5,php53,php7: Invalid read when wddx decodes empty boolean element</issue> <issue id="1015188" tracker="bnc">VUL-0: CVE-2016-9934: php5,php53,php7: NULL Pointer Dereference in WDDX Packet Deserialization with PDORow</issue> <issue id="1015187" tracker="bnc">VUL-0: CVE-2016-9933: php5,php53,php7: imagefilltoborder stackoverflow on truecolor images</issue> <issue id="2016-9934" tracker="cve" /> <issue id="2016-9935" tracker="cve" /> <issue id="2016-9933" tracker="cve" /> <category>security</category> <rating>moderate</rating> <packager>pgajdos</packager> <description>This update for php5 fixes the following issues: * CVE-2016-9933 Possible stack overflow on truecolor images handling [bsc#1015187] * CVE-2016-9934 Dereference from NULL pointer could lead to crash [bsc#1015188] * CVE-2016-9935 Invalid read could lead to crash [bsc#1015189] This update was imported from the SUSE:SLE-12:Update update project.</description> <summary>Security update for php5</summary> </patchinfo>