SuSE: 2014:0868-1: important: PHP5
Summary
PHP5 has been updated to fix two security vulnerabilities:
* Heap-based buffer overflow in DNS TXT record parsing (CVE-2014-4049)
* NULL pointer dereference in GD XPM decoder (CVE-2014-2497)
Security Issue references:
* CVE-2014-4049
References
#868624 #882992
Cross- CVE-2014-2497 CVE-2014-4049
Affected Products:
SUSE Linux Enterprise Server 11 SP2 LTSS
https://www.suse.com/security/cve/CVE-2014-2497.html
https://www.suse.com/security/cve/CVE-2014-4049.html
https://bugzilla.novell.com/868624
https://bugzilla.novell.com/882992
https://scc.suse.com:443/patches/