MGASA-2018-0085

Source
https://advisories.mageia.org/MGASA-2018-0085.html
Import Source
https://advisories.mageia.org/MGASA-2018-0085.json
JSON Data
https://api.osv.dev/v1/vulns/MGASA-2018-0085
Published
2018-01-14T16:54:13Z
Modified
2026-04-16T04:27:03.054404Z
Summary
Updated php & libgd packages fix security vulnerabilities
Details

Potential infinite loop in gdImageCreateFromGifCtx (php#75571). Reflected XSS in .phar 404 page (php#74782).

References
Credits

Affected packages

Mageia:5 / php

Package

Name
php
Purl
pkg:rpm/mageia/php?arch=source&distro=mageia-5

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
5.6.33-1.mga5

Ecosystem specific

{
    "section": "core"
}

Database specific

source
"https://advisories.mageia.org/MGASA-2018-0085.json"

Mageia:5 / libgd

Package

Name
libgd
Purl
pkg:rpm/mageia/libgd?arch=source&distro=mageia-5

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.2.5-1.1.mga5

Ecosystem specific

{
    "section": "core"
}

Database specific

source
"https://advisories.mageia.org/MGASA-2018-0085.json"